Free DISA STIG and SRG Library | Vaulted

V-11866

BlackBerry Bluetooth SCR use with site PCs must be compliant with requirements.

Finding ID
WIR1040-02
Rule ID
SV-12366r3_rule
Severity
Cat III
CCE
(None)
Group Title
Bluetooth SCR usage -02
CCI
(None)
Target Key
(None)
Documentable
No
Discussion

Insecure Bluetooth configuration on the PC could make it vulnerable to compromise via a Bluetooth attack.

Fix Text

BlackBerry Bluetooth SCR use with site PCs must be compliant with requirements.

Check Content

Detailed Policy Requirements: When the BlackBerry Bluetooth Smart Card Reader (SCR) is used as a PC SCR, the following requirements must be followed: The AO must approve the use of a Bluetooth smart card reader with command/site PCs. Check Procedures: Interview the ISSO and wireless email system administrator. Determine if use of the BlackBerry SCR with site PCs has been approved. If Yes, verify the following requirements are met: The AO has approved the use of the BlackBerry SCR with site PCs. Have the ISSO provide documentation showing AO approval (letter, memo, SSP, etc.).

Responsibility

System Administrator