UCF STIG Viewer Logo

The network element must maintain the integrity of information during aggregation and encapsulation in preparation for transmission.


Overview

Finding ID Version Rule ID IA Controls Severity
V-34724 SRG-NET-000209-IDPS-NA SV-45620r1_rule Low
Description
This control applies to communications across internal and external networks. The IDPS must employ cryptographic mechanisms to recognize changes to information while preparing information for transmission unless the transmission is otherwise protected by alternative physical measures. If connectivity is provided by a commercial service provider rather than a dedicated service, obtaining the necessary assurances regarding the implementation of needed security controls for transmission integrity may not be possible. Without cryptographic integrity controls, information traveling over commercial networks could be altered or compromised during transmission. Therefore, these controls must be obtained from the service provider using appropriate contracting vehicles. If this is not feasible, then the organization will implement physical or logical compensating security controls. Aggregation and encapsulation of network level traffic is not a function of the IDPS, thus this requirement is not applicable.
STIG Date
Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide 2012-11-19

Details

Check Text ( C-42986r1_chk )
This requirement is NA for IDPS. No fix required.
Fix Text (F-39018r1_fix)
This requirement is NA for IDPS. No fix required.