STIGQter STIGQter: STIG Summary: Network Infrastructure Policy Security Technical Implementation Guide Version: 10 Release: 7 Benchmark Date: 24 Oct 2024:

All external connections must be validated and approved by the Authorizing Official (AO) and the Connection Approval Office (CAO) and meeting Connection Approval Process (CAP) requirements.

DISA Rule

SV-251354r806017_rule

Vulnerability Number

V-251354

Group Title

NET0130

Rule Version

NET0130

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

All external connections will be validated and approved prior to connection. Interview the ISSM to verify that all connections have a mission requirement and that the AO is aware of the requirement.

Check Contents

Review the network topology and interview the ISSO to verify that each external connection to the site's network has been validated and approved by the AO and CAO and that CAP requirements have been met.

If there are any external connections that have not been validated and approved, this is a finding.

Vulnerability Number

V-251354

Documentable

False

Rule Version

NET0130

Severity Override Guidance

Review the network topology and interview the ISSO to verify that each external connection to the site's network has been validated and approved by the AO and CAO and that CAP requirements have been met.

If there are any external connections that have not been validated and approved, this is a finding.

Check Content Reference

M

Target Key

5444