Rule ID
SV-283641r1190334_rule
Version
V1R1
CCIs
CCI-002536
Ad hoc wireless client-to-client connections allow mobile devices to communicate with each other directly, circumventing network security policies and making the traffic invisible. This could allow the exposure of sensitive DOD data and increase the risk of downloading and installing malware on the DOD mobile device. SFR ID: FMT_SMF_EXT.1.1/WLAN
This validation procedure is performed on both the management tool and the Zebra Android device. On the management tool, in the user restrictions, verify "Wi-Fi Direct" has been set to "Disallow". On the Zebra Android device: 1. Open Settings >> Connections >> Wi-Fi. 2. From the hamburger menu, select "Wi-Fi Direct". 3. Verify that "Wi-Fi Direct" cannot be selected. If on the management tool "Wi-Fi Direct" is not set to "Disallow", or on the Zebra Android device a Wi-Fi Direct device is listed that can be connected to, this is a finding.
Configure the Zebra Android devices to disallow Wi-Fi Direct. On the management tool, in the user restrictions, set "Wi-Fi Direct" to "Disallow". Wi-Fi Direct connections and pairing between devices will become unavailable.