DTBC-0073 - Web Bluetooth API must be disabled.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Setting the policy to 3 lets websites ask for access to nearby Bluetooth devices. Setting the policy to 2 denies access to nearby Bluetooth devices.

Leaving the policy unset lets sites ask for access, but users can change this setting.

2 = Do not allow any site to request access to Bluetooth devices via the Web Bluetooth API
3 = Allow sites to ask the user to grant access to a nearby Bluetooth device

Solution

Windows group policy:
1. Open the 'group policy editor' tool with gpedit.msc
2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome\Content Settings
Policy Name: Control use of the Web Bluetooth API
Policy State: Enabled
Policy Value: Do not allow any site to request access to Bluetooth devices via the Web Bluetooth API

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Chrome_V2R8_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000381, Rule-ID|SV-241787r720329_rule, STIG-ID|DTBC-0073, STIG-Legacy|SV-34246, STIG-Legacy|V-26961, Vuln-ID|V-241787

Plugin: Windows

Control ID: 2565bb0d09d601753943dce7a74636e13754f226189d6677594c71ef3d3a834e