STIGQter STIGQter: STIG Summary: Voice Video Services Policy Security Technical Implementation Guide Version: 3 Release: 17 Benchmark Date: 25 Oct 2019:

The required dual homed DISN Core or NIPRNet access circuits DO NOT follow geographically diverse paths from the CER(s) along the entire route to the geographically diverse SDNs.

DISA Rule

SV-21744r1_rule

Vulnerability Number

V-19603

Group Title

Deficient Design: Dual Homed ckts; Diverse Paths

Rule Version

VVoIP 6145 (DISN-IPVS)

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Ensure dual homed DISN Core or NIPRNet access circuits follow geographically diverse paths from the CER(s) along the entire route to the geographically diverse SDNs.

Ensure each circuit uses different facilities such as cables, demarks, and digital cross connects in geographically diverse locations.

Ensure geographic and facilities is maintained on-site and off-site.

Ensure the paths taken by the access circuits remain significantly separate along their entire length such that a single point of failure is not created.

Check Contents

Inspect the documentation for the pathways taken by the access circuits to determine compliance with the requirement. Obtain the pathway documentation for the facilities on-site. Additionally, obtain information the DISN core PMO and/or local carrier of the access circuits for the pathways off-site. Once obtained the IAO should maintain a copy for future inspections. Changes to the pathways must also be recorded and maintained.

This is a finding in the event the required dual-homed circuits follow the same path or are close enough anywhere along their entire length to be damaged by a single event.

Vulnerability Number

V-19603

Documentable

False

Rule Version

VVoIP 6145 (DISN-IPVS)

Severity Override Guidance

Inspect the documentation for the pathways taken by the access circuits to determine compliance with the requirement. Obtain the pathway documentation for the facilities on-site. Additionally, obtain information the DISN core PMO and/or local carrier of the access circuits for the pathways off-site. Once obtained the IAO should maintain a copy for future inspections. Changes to the pathways must also be recorded and maintained.

This is a finding in the event the required dual-homed circuits follow the same path or are close enough anywhere along their entire length to be damaged by a single event.

Check Content Reference

M

Potential Impact

Reduced availability and the inability to complete a C2 call

Responsibility

Information Assurance Officer

Target Key

594

Comments