Windows Server 2025 must not have Wi-Fi enabled unless required by the organization.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-278017WN25-00-000332SV-278017r1180757_ruleCCI-000382medium
Description
Unnecessary connections could increase the attack surface of a system. Some of these services may not support required levels of authentication or encryption.
STIGDate
Microsoft Windows Server 2025 Security Technical Implementation Guide2026-02-20

Related Frameworks

3 paths across 3 frameworks
NIST 800-531 mapping
CM-7
1.00
  • DISA · V1R1 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1711 mapping
3.4.6
1.00
  • DISA · V1R1 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-000382
1.00
  • DISA · V1R1 · disa_xccdf · related

Details

Check Text (C-278017r1180757_chk)

Open PowerShell or a Command prompt. Type "IP Config /All". If there is a connection named "Wi-Fi" or "Wireless", this is a finding.

Fix Text (F-82452r1180756_fix)

Validate the site documentation to ensure the approval of use for Wi-Fi server connections. If the connection (s) have not been approved, go to "Settings" then "Network and Internet" and remove/disable the Wi-Fi adapter. Any Wi-Fi connections listed or in use must be documented and approved by the information system security officer (ISSO) or authorizing official (AO).