WLAN SSIDs must be changed from the manufacturer's default to a pseudo random word that does not identify the unit, base, organization, etc.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
lowV-243227SRG-NET-000512WLAN-NW-000200SV-243227r720136_rule2023-02-137

Description

An SSID identifying the unit, site, or purpose of the WLAN or that is set to the manufacturer default may cause an OPSEC vulnerability.

ℹ️ Check

Review device configuration. 1. Obtain the SSID using a wireless scanner or the AP or WLAN controller management software. 2. Verify the name is not meaningful (e.g., site name, product name, room number, etc.) and is not set to the manufacturer's default value. If the SSID does not meet the requirement listed above, this is a finding.

✔️ Fix

Change the SSID to a pseudo random word that does not identify the unit, base, or organization.