SV-31427r2_rule
V-25316
WLAN Access Point passcode
WIR0122
CAT II
10
The key generation password configured on the WLAN Access Point must be set to a 14-character or longer complex password on access points that do not use AAA servers for authentication.
This check only applies to access points that do not use an AAA (RADIUS) server for authentication services. In most cases, this means the access point is configured for WPA2 (Personal), which relies on password authentication, and not WPA2 (Enterprise) which uses an AAA server to authenticate each user based on that user’s authentication credentials.
Verify the client authentication password has been set on the access point with the following settings:
-14 characters or longer.
-The authentication password selected must be comprised of at least two of each of the following: upper case letter, lower case letter, number, and special character.
The procedure for verifying these settings varies between AP models. Have the SA show the settings in the AP management console.
V-25316
False
WIR0122
This check only applies to access points that do not use an AAA (RADIUS) server for authentication services. In most cases, this means the access point is configured for WPA2 (Personal), which relies on password authentication, and not WPA2 (Enterprise) which uses an AAA server to authenticate each user based on that user’s authentication credentials.
Verify the client authentication password has been set on the access point with the following settings:
-14 characters or longer.
-The authentication password selected must be comprised of at least two of each of the following: upper case letter, lower case letter, number, and special character.
The procedure for verifying these settings varies between AP models. Have the SA show the settings in the AP management console.
M
Information Assurance Officer
545