Pentagon to issue wireless disconnect order
Computerworld - LAS VEGAS -- The inherent insecurity of wireless devices is now a matter of national security.
John Stenbit, the Pentagon's CIO, said this week that he plans to issue new policy guidelines that will ban most if not all wireless devices within military installations. The change in policy comes only months after Computerworld first reported the results of wireless security audits at major U.S. airlines and the facility housing the U.S. Defense Department's global network operations center.
Pentagon officials fear that the latest generation of wireless devices, including cell phones and two-way pagers, can be used as eavesdropping devices during classified meetings. Military facilities and offices that are used for highly classified meetings are already routinely scanned for listening devices.
However, with the growing use of personal wireless communications systems, security audits increasingly find military officers attending meetings in classified office spaces with these devices on their person, creating the potential for adversaries to turn these devices into crude eavesdropping systems, military officials acknowledged.
Devices such as cell phones have long been banned from facilities known as Sensitive Compartmented Information Facilities. In fact, all military personnel who are granted top-secret security clearances are required to attend an indoctrination briefing on the growing list of threats posed by electronic devices. However, the new Pentagon policy extends the wireless ban to the majority of office spaces where sensitive but unclassified information may be discussed. It also builds upon a larger government policy of using the government's purchasing power as a market driver to get the IT industry to improve the security of its products if it wants to sell into the government.
"Why is it that companies have sold products that they know are insecure?" asked Richard Clarke, President Bush's chief cybersecurity adviser. "And why is it that people have bought them? We should all shut [wireless LANs] off until the technology gets better."
Steven Aftergood, a defense analyst at the Federation of American Scientists in Washington, said the policy change makes perfect sense for a high-risk environment such as the military.
"People get accustomed to using nifty products that are extremely useful in other parts of their lives, such as cell phones, wireless Internet connections and all kinds of recording devices," said Aftergood. "And it's easy to forget that these are inappropriate in a secure environment."
In May, a wireless security expert managed to detect the nonsecure wireless LAN at the Defense Information Systems Agency (DISA) in Arlington, Va. (see story). While parked across the street from DISA's headquarters, the securityexpert was able to view the Service Set Identifier numbers of access points and numerous IP addresses. Using a standard 802.11b wireless LAN card attached to his laptop computer and access-point detection software from San Diego-based NetStumbler.com, he was able to scan the network in less than half an hour.
Some airlines also pulled the plug earlier this year on their wireless bag checking systems after auditors managed to hack their way into sensitive back-end systems, such as the passenger manifest and aircraft maintenance systems (see story).
Read more about Mobile and Wireless in Computerworld's Mobile and Wireless Topic Center.



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Digital Transformation: Creating New Business Models Where Digital Meets Physical
- Individuals and businesses alike are embracing the digital revolution. Social networks and digital devices are being used to engage government, businesses and civil...
- Empowering Your Mobile Worker
- Today's most productive employees are mobile, and your company's IT strategy must be ready to support them with 24/7 access to the business...
- An Interactive Guide: Bring Your Own Device
- BYOD presents significant security and management challenges to IT departments who want to take advantage of the trend, but still protect corporate assets....
- Calculating ROI for Mobile Client Acceleration
- As mobile devices continue to expand in business use, ensuring these devices have optimal performance is becoming an IT imperative. This EMA paper...
- Tablet Computing Without Compromise
- This paper provides an overview of how and why that migration-from any old tablet to Windows tablets-came to be. All Mobile and Wireless White Papers
- Live Webcast
North Pole to South Seas: Overcoming the Pitfalls of remote Performance - In today's always-on world, connectivity is a business requirement. You need the tools that allow you to operate as if you were on...
- Supporting Mobile Productivity With A Limited IT Budget
- Join us and hear from Kaseya mobile IT management experts as we discuss core strategies for supporting the mobile revolution on a shoestring...
- North Pole to South Seas: Overcoming the Pitfalls of remote Performance
- In today's always-on world, connectivity is a business requirement. You need the tools that allow you to operate as if you were on...
- Unified Communications 101
- What's the best way to implement a unified communications solution for your organization?
- QNX® and BlackBerry® PlayBook™ Tablet.
- RIM's multi-processor, multi-tasking BlackBerry PlayBook runs a new Tablet OS powered by QNX, a bullet-proof microkernel operating system. This track will take a...
- A Close Look at Tablets
- Learn More All Mobile and Wireless Webcasts