UCF STIG Viewer Logo

The network attached KVM switch must not be attached to a network that is not at the same classification level as the ISs attached.


Overview

Finding ID Version Rule ID IA Controls Severity
V-6706 KVM03.002.00 SV-6901r2_rule ECIC-1 High
Description
If a network attached KVM switch is attached to a network of a different classification level than the ISs attached to the KVM switch, this could lead to a compromise of sensitive data either on the network or on the ISs. The ISSO will ensure network attached KVM switches are only connected to a network at the same classification level as the ISs attached.
STIG Date
Keyboard Video and Mouse Switch STIG 2015-12-09

Details

Check Text ( C-2712r2_chk )
The reviewer will interview the ISSO to verify that a network attached KVM switch is attached to a network of the same classification level as the ISs attached. If the network KVM is attached to a network that is not at the same classification level as the attached ISs, then this is a finding.
Fix Text (F-6313r2_fix)
Remove the KVM switch from the network when the network KVM switch is attached to a network at a different classification level than the attached ISs. Attach the KVM switch to a network of the appropriate classification level.