UCF STIG Viewer Logo

The network element must implement security policies for all traffic flows by using security zones at various protection levels as a basis for flow control decisions.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000028-FW-NA SRG-NET-000028-FW-NA SRG-NET-000028-FW-NA_rule Medium
Description
Information flow control regulates where information is allowed to travel within a network and between interconnected networks. The flow of all network traffic must be monitored and controlled so it does not introduce unacceptable risks to the network infrastructure or data. Restrictions can be enforced using security zones at various protection levels as a basis for flow control decisions. Usually flow control is not a primary function of the firewall implementation. However, many products are able to support flow control decisions or affect the flow more directly. This requirement addresses cross domain guard solutions and is out of scope for the firewall SRG.
STIG Date
Firewall Security Requirements Guide 2012-12-10

Details

Check Text ( C-SRG-NET-000028-FW-NA_chk )
This requirement is NA for firewall. No fix required.
Fix Text (F-SRG-NET-000028-FW-NA_fix)
This requirement is NA for firewall. No fix required.