Windows Server 2025 must not have Wi-Fi enabled unless required by the organization.

STIG ID: WN25-00-000332  |  SRG: SRG-OS-000096-GPOS-00050 |  Severity: medium (CAT II)  |  CCI: CCI-000382 |  Vulnerability Id: V-278017

Vulnerability Discussion

Unnecessary connections could increase the attack surface of a system. Some of these services may not support required levels of authentication or encryption.

Check

Open PowerShell or a Command prompt.

Type "IP Config /All".

If there is a connection named "Wi-Fi" or "Wireless", this is a finding.

Fix

Validate the site documentation to ensure the approval of use for Wi-Fi server connections.

If the connection (s) have not been approved, go to "Settings" then "Network and Internet" and remove/disable the Wi-Fi adapter. Any Wi-Fi connections listed or in use must be documented and approved by the information system security officer (ISSO) or authorizing official (AO).