UCF STIG Viewer Logo

The operating system must prevent encrypted data from bypassing content checking mechanisms.


Overview

Finding ID Version Rule ID IA Controls Severity
V-29046 SRG-OS-000012 SV-37037r1_rule Medium
Description
Information flow control regulates where information is allowed to travel within an information system and between information systems (as opposed to who is allowed to access the information) and without explicit regard to subsequent accesses to the information. When data is encrypted, mechanisms designed to examine data content to detect attacks or malicious code are unable to accomplish this task unless they are capable of unencrypting the data.
STIG Date
Operating System Security Requirements Guide 2013-03-28

Details

Check Text ( None )
None
Fix Text (None)
None