Check: ENTD0170
Test and Development Zone A STIG:
ENTD0170
(in versions v1 r6 through v1 r3)
Title
Ports, protocols, and services visible to DoD operational networks or ISPs must follow DoDI 8551.1 policy. (Cat II impact)
Discussion
In accordance with the DoD 8551.1 policy, the test and development environment may require external access to live operational data to perform final stage testing. All network connections for the test and development environment must make use of the PPS CAL at the appropriate boundaries.
Check Content
Review the latest version of the PPS CAL for those ports, protocols, and services visible to DoD-managed components. If the organization is using ports, protocols, or services deemed not acceptable by the PPS CAL or requiring Authorization Official approval without proper documentation, this is a finding.
Fix Text
Configure all ports, protocols, and services visible to DoD-managed components as described in the DoDI 8551.1 PPSM policy.
Additional Identifiers
Rule ID: SV-51487r1_rule
Vulnerability ID: V-39629
Group Title: ENTD0170 - PPS does not following the DoDI 8551.1.
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |