Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-6706 | KVM03.002.00 | SV-6901r1_rule | ECIC-1 | High |
Description |
---|
If a network attached KVM switch is attached to a network of a different classification level than the ISs attached to the KVM switch, this will lead to a compromise of sensitive data either on the network or on the ISs. The IAO will ensure that network attached KVM switches are only connected to a network that is at the same classification level as the ISs attached |
STIG | Date |
---|---|
Keyboard Video and Mouse Switch STIG | 2014-08-04 |
Check Text ( C-2712r1_chk ) |
---|
The reviewer will interview the IAO to verify that a network attached KVM switch is attached to a network of the same classification level as the ISs attached. |
Fix Text (F-6313r1_fix) |
---|
Remove the KVM switch from the network when the KVM IS attached to the KVM switch are at a different classification level then the network. Attach the KVM switch to a network of the appropriate classification level. |