The cryptography implemented by the Wireless Local Area Network (WLAN) components must be FIPS 140-2 validated.

From Network Infrastructure Policy Security Technical Implementation Guide

Part of WLAN EAP-TLS FIPS 140-2 validation

Associated with: CCI-000366

SV-22070r3_rule The cryptography implemented by the Wireless Local Area Network (WLAN) components must be FIPS 140-2 validated.

Vulnerability discussion

Most known security breaches of cryptography result from improper implementation of the cryptography, not flaws in the cryptographic algorithms themselves. FIPS 140-2 validation provides assurance that cryptography is implemented correctly, and is required for Federal Government uses of cryptography in non-classified applications.

Check content

Review the WLAN system product documentation. Verify the system is WPA2-Enterprise certified by the Wi-Fi Alliance. If the WLAN product is not WPA2-Enterprise certified, this is a finding.

Fix text

Procure WLAN equipment whose implementation of TLS has been FIPS 140-2 validated.

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer