STIGQter STIGQter: STIG Summary: Traditional Security Checklist Version: 1 Release: 3 Benchmark Date: 15 Jun 2020:

Information Assurance - NIPRNET Connection Approval (CAP)

DISA Rule

SV-41177r3_rule

Vulnerability Number

V-31090

Group Title

Information Assurance - NIPRNET Connection Approval (CAP)

Rule Version

IA-08.02.01

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. The NIPRNet connection approval package must be complete and accurate and the approval to connect (ATC) or Interim Approval to Connect (IATC) must be current.

2. The approval must come from the DISN Connection Approval Office (CAO).

Check Contents

1. Check the NIPRNet connection approval package. Conduct a cursory review for any traditional security issues.

2. Ensure the approval is current. The approval must come from the DISN Connection Approval Office (CAO).

TACTICAL ENVIRONMENT: The check is applicable. The ATO/ATC and associated documentation should be found in a fixed HQ location where the ISSM/ISSO are located. When possible, documentation should be requested/sought before departing on trips to tactical locations. Copies sent to the reviewers email (NIPR or SIPR depending on classification of document) can be used to validate compliance.

Vulnerability Number

V-31090

Documentable

False

Rule Version

IA-08.02.01

Severity Override Guidance

1. Check the NIPRNet connection approval package. Conduct a cursory review for any traditional security issues.

2. Ensure the approval is current. The approval must come from the DISN Connection Approval Office (CAO).

TACTICAL ENVIRONMENT: The check is applicable. The ATO/ATC and associated documentation should be found in a fixed HQ location where the ISSM/ISSO are located. When possible, documentation should be requested/sought before departing on trips to tactical locations. Copies sent to the reviewers email (NIPR or SIPR depending on classification of document) can be used to validate compliance.

Check Content Reference

M

Target Key

2506

Comments