Samsung Android must be configured to disable ad hoc wireless client-to-client connection capability.
Overview
Finding ID | Version | Rule ID | IA Controls | Severity |
V-268958 | KNOX-15-008400 | SV-268958r1035970_rule | Medium |
Description |
Ad hoc wireless client-to-client connections allow mobile devices to communicate with each other directly, circumventing network security policies and making the traffic invisible. This could allow the exposure of sensitive DOD data and increase the risk of downloading and installing malware of the DOD mobile device. SFRID: FMT_SMF_EXT.1.1/WLAN |
STIG | Date |
Samsung Android OS 15 with Knox 3.x COBO Security Technical Implementation Guide | 2024-12-10 |
Details
Check Text (C-72988r1035968_chk) |
Review the configuration to determine if the Samsung Android devices are disallowing Wi-Fi Direct. This validation procedure is performed on both the management tool and the Samsung Android device. On the management tool, in the user restrictions, verify "Wi-Fi Direct" has been set to "Disallow". On the Samsung Android device: 1. Open Settings >> Connections >> Wi-Fi. 2. From the hamburger menu, select Wi-Fi Direct. 3. Verify that Wi-Fi Direct cannot be selected. If on the management tool "Wi-Fi Direct" is not set to "Disallow", or on the Samsung Android device a Wi-Fi direct device is listed that can be connected to, this is a finding. |
Fix Text (F-72889r1035969_fix) |
Configure the Samsung Android devices to disallow Wi-Fi Direct. On the management tool, in the user restrictions, set "Wi-Fi Direct" to "Disallow". Wi-Fi direct connections and pairing between devices will become unavailable. |