UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

An IP-based VTC system implementing a single CODEC that supports conferences on multiple networks with different classification levels (i.e., unclassified, SECRET, TOP SECRET, TS-SCI) must support Periods Processing by connecting the CODEC to one network at a time, matching the classification level of the session to the classification level of the network.


Overview

Finding ID Version Rule ID IA Controls Severity
V-259893 SRG-VOIP-000130 SV-259893r948737_rule High
Description
Connecting to networks of different classifications simultaneously incurs the risk of data from a higher classification being released to a network of a lower classification, referred to as a "spill". It is imperative that networks of differing classification levels or with differing handling caveats not be interconnected at any time. Separation in a multinetwork VTC system is maintained by the use of an A/B, A/B/C, or A/B/C/D switch that meets requirements for channel isolation or by manual connection of the CODEC to one network at a time.
STIG Date
Enterprise Voice, Video, and Messaging Policy Security Requirements Guide 2024-03-12

Details

Check Text ( C-63624r946598_chk )
Review the VTC system architecture to verify that an approved A/B, A/B/C, or A/B/C/D switch is present and properly cabled.

Alternately, validate that the VTC CODEC is manually connected to one network at a time through the use of a single patch cord.

If neither is in place, this is a finding.
Fix Text (F-63531r946599_fix)
Obtain and install an approved A/B, A/B/C, or A/B/C/D switch.

Alternately, manually connect the VTC CODEC to one network at a time through the use of a single patch cord.