UCF STIG Viewer Logo

A KVM switch, which is attached to ISs of different classification levels, has connectors for additional peripherals other than the keyboard, video, or mouse that are not blocked with tamper resistant seals.


Overview

Finding ID Version Rule ID IA Controls Severity
V-6704 KVM02.010.00 SV-6889r1_rule DCBP-1 Medium
Description
It will be assumed that KVM switches that can switch peripherals other than the keyboard, video monitor, and mouse, that are attached to ISs of differing classification levels, and that do not have the connectors for the additional peripherals blocked with tamper resistant seals, have been tampered with and have been used to transfer data between ISs of different classifications levels until proven otherwise. If data is transferred between ISs of different classification levels the data has been compromised and the receiving IS has been compromised. When the KVM switch is attached to ISs of different classification levels, the IAO or SA will ensure that the connectors for additional peripherals are blocked with tamper resistant seals.
STIG Date
Keyboard Video and Mouse Switch STIG 2014-08-04

Details

Check Text ( C-2688r1_chk )
The reviewer will view the KVM switch, which is attached to ISs of different classification levels, to verify that all connectors for peripherals other than a keyboard, video or mouse are blocked with tamper resistant seals.
Fix Text (F-6299r1_fix)
Obtain tamper resistant seals and apply them across the connectors for peripherals other than the keyboard, video monitor, and mouse on KVM so the if a cable is attached to the connector the seal will be broken.