UCF STIG Viewer Logo

The network device must enforce organizationally defined limitations on the embedding of data types within other data types.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000031-NDM-NA SRG-NET-000031-NDM-NA SRG-NET-000031-NDM-NA_rule Medium
Description
Information flow control policies and enforcement mechanisms are commonly employed by organizations to control the flow of information between designated sources and destinations (e.g., networks, individuals, devices) within information systems and between interconnected systems. This control requires limits be set on the number of layers of encapsulation of information. With too many layers, it becomes increasingly difficult to inspect the information for malicious code. A possible enforcement mechanism for the network device is to create a rule to monitor for and enforce organizationally defined limitations on tunneling and other encapsulation methods. This requirement is applicable to specific devices and does not involve the management of a network device.
STIG Date
Network Device Management Security Requirements Guide 2013-07-30

Details

Check Text ( C-SRG-NET-000031-NDM-NA_chk )
This requirement is NA for network device management.
Fix Text (F-SRG-NET-000031-NDM-NA_fix)
This requirement is NA for network device management.