Free DISA STIG and SRG Library | Vaulted

V-15300

Any wireless technology used to transmit classified information must be an NSA Type 1 product.

Finding ID
WIR0205
Rule ID
SV-16085r1_rule
Severity
Cat I
CCE
(None)
Group Title
Classified WLAN uses NSA Type 1 products
CCI
(None)
Target Key
(None)
Documentable
No
Discussion

NSA Type 1 certification provides the level of assurance required for transmission of classified data. Systems without this certification are more likely to be compromised by a determined and resourceful adversary.

Fix Text

Immediately remove the uncertified device from the network. Install and operate a Type 1 product if wireless functionality is still required.

Check Content

Visually verify the site is using a Harris Corporation SecNet 11 or SecNet 54 or L3 KOV-26 Talon (version 1.1.04 or later) for the classified WLAN.

Responsibility

System Administrator

IA Controls

ECWM-1