UCF STIG Viewer Logo

All encrypted traffic must be decrypted prior to passing through content inspection and filtering mechanisms.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000030-RTR-NA SRG-NET-000030-RTR-NA SRG-NET-000030-RTR-NA_rule Medium
Description
Allowing traffic to bypass the security checkpoints such as firewalls and intrusion detection systems puts the network infrastructure and critical data at risk. Malicious traffic could enter the network undetected and attack a key network element or the server farm. Hence, it is imperative all encrypted traffic entering the network be decrypted prior to the content checking devices. This requirement is applicable to network architecture and is not applicable to the routing function.
STIG Date
Router Security Requirements Guide 2013-07-30

Details

Check Text ( C-SRG-NET-000030-RTR-NA_chk )
This requirement is NA for router.
Fix Text (F-SRG-NET-000030-RTR-NA_fix)
This requirement is NA for router.