Rule ID
SV-220735r569187_rule
Version
V2R9
CCIs
If not configured properly, Bluetooth may allow rogue devices to communicate with a system. If a rogue device is paired with a system, there is potential for sensitive information to be compromised.
This is NA if the system does not have Bluetooth. Verify the organization has a policy to turn off Bluetooth when not in use and personnel are trained. If it does not, this is a finding.
Turn off Bluetooth radios when not in use. Establish an organizational policy for the use of Bluetooth to include training of personnel.