MA-4(4)
MA-4(4): Authentication and Separation of Maintenance Sessions
Protect nonlocal maintenance sessions by:
- (a): Employing [authenticators that are replay resistant are defined;] ; and
-
(b): Separating the maintenance sessions from other network sessions with the system by either:
- (1): Physically separated communications paths; or
- (2): Logically separated communications paths.
Supplemental
Communications paths can be logically separated using encryption.
| CIA Levels | |
|---|---|
| Confidentiality | unknown |
| Integrity | moderate |
| Availability | unknown |
| Overlays |
|---|
| DAF Baseline, Int-A, Int-B, Int-C |
| CSF Categories |
|---|
| None |