STIGQter STIGQter: STIG Summary: Traditional Security Checklist Version: 1 Release: 3 Benchmark Date: 15 Jun 2020:

Protected Distribution System (PDS) Monitoring - Initial Inspection

DISA Rule

SV-41022r3_rule

Vulnerability Number

V-30978

Group Title

PDS Monitoring - Initial Inspection

Rule Version

CS-06.03.02

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Following is a reiteration of the requirement:

1. The PDS must be inspected prior to initial operation. Documentation of the inspection and results must be available for review. This meets the following requirement from the CNSSI 7003: "The Approval Authority (AO) shall ensure PDS are inspected in accordance with SECTION XI and certified prior to initial operation."

2. The initial inspection must be a technical inspection performed by a trained CTTA prior to approval of the PDS by the AO.

3. The initial inspection must document the path of the PDS, the locations for all pull boxes, and the locations for all conduit joints at intervals less than the length of conduit segments (typically 10 feet).

NOTES:

1. The PDS may be documented using detailed “as-built” installation drawings or photographs. *Subsequent technical inspections can then verify the path of the PDS and the location of pull boxes and joints.

2. When test equipment is locally available and resident expertise allows, the initial inspection should measure and record the electrical characteristics of the PDS lines to obtain a baseline electrical profile of the PDS.

3. Such measurements may consist of signal levels, voltage levels, time domain reflectometer (TDR) recorded readings, and any other electrical measurements that may be recorded and retained. * Subsequent technical inspections may then record and compare measurements taken to the previously recorded baseline measurements to identify possible tampering attempts.

4. This check is applicable in a tactical environment if the PDS is located within a fixed facility. It is not applicable to field/mobile PDS.

5. In the reviewer notes be sure to provide the date of the initial inspection, name of inspector and general description of results.

6. Obviously an initial inspection cannot ever be conducted once it is not completed. Therefore the fix for this finding is to send a written request to the PDS approval authority asking for an "initial" inspection of the PDS by an individual appointed by the approval authority. If the approval authority concurs to conduct the inspection then this finding can be closed once the inspection is actually completed and any results form that inspection are closed. If the reply from the approval authority indicates they will not complete their "required" inspection then then finding can be closed and the reply from the approval authority should be maintained for future reference.

Check Contents

Check to ensure:

1. The PDS was inspected prior to initial operation. Documentation of the inspection and results should be available for review. This meets the following requirement from the CNSSI 7003: "The Approval Authority (AO) must ensure PDS are inspected in accordance with SECTION XI and certified prior to initial operation."

2. The initial inspection was a technical inspection performed by a trained CTTA prior to approval of the PDS by the AO.

3. The initial inspection documented the path of the PDS, the locations for all pull boxes, and the locations for all conduit joints at intervals less than the length of conduit segments (typically 10 feet).

NOTES:

1. The PDS may be documented using detailed “as-built” installation drawings or photographs. *Subsequent technical inspections can then verify the path of the PDS and the location of pull boxes and joints.

2. When test equipment is locally available and resident expertise allows, the initial inspection should measure and record the electrical characteristics of the PDS lines to obtain a baseline electrical profile of the PDS.

3. Such measurements may consist of signal levels, voltage levels, time domain reflectometer (TDR) recorded readings, and any other electrical measurements that may be recorded and retained. * Subsequent technical inspections may then record and compare measurements taken to the previously recorded baseline measurements to identify possible tampering attempts.

4. This check is applicable in a tactical environment if the PDS is located within a fixed facility. It is not applicable to field/mobile PDS.

5. In the reviewer notes be sure to provide the date of the initial inspection, name of inspector and general description of results.

Vulnerability Number

V-30978

Documentable

False

Rule Version

CS-06.03.02

Severity Override Guidance

Check to ensure:

1. The PDS was inspected prior to initial operation. Documentation of the inspection and results should be available for review. This meets the following requirement from the CNSSI 7003: "The Approval Authority (AO) must ensure PDS are inspected in accordance with SECTION XI and certified prior to initial operation."

2. The initial inspection was a technical inspection performed by a trained CTTA prior to approval of the PDS by the AO.

3. The initial inspection documented the path of the PDS, the locations for all pull boxes, and the locations for all conduit joints at intervals less than the length of conduit segments (typically 10 feet).

NOTES:

1. The PDS may be documented using detailed “as-built” installation drawings or photographs. *Subsequent technical inspections can then verify the path of the PDS and the location of pull boxes and joints.

2. When test equipment is locally available and resident expertise allows, the initial inspection should measure and record the electrical characteristics of the PDS lines to obtain a baseline electrical profile of the PDS.

3. Such measurements may consist of signal levels, voltage levels, time domain reflectometer (TDR) recorded readings, and any other electrical measurements that may be recorded and retained. * Subsequent technical inspections may then record and compare measurements taken to the previously recorded baseline measurements to identify possible tampering attempts.

4. This check is applicable in a tactical environment if the PDS is located within a fixed facility. It is not applicable to field/mobile PDS.

5. In the reviewer notes be sure to provide the date of the initial inspection, name of inspector and general description of results.

Check Content Reference

M

Target Key

2506

Comments