SC-7(16)—Boundary Protection
Technical
>Control Description
BOUNDARY PROTECTION | PREVENT DISCOVERY OF COMPONENTS / DEVICES The information system prevents discovery of specific system components composing a managed interface.
>Supplemental Guidance
This control enhancement protects network addresses of information system components that are part of managed interfaces from discovery through common tools and techniques used to identify devices on networks. Network addresses are not available for discovery (e.g., network address not published or entered in domain name systems), requiring prior knowledge for access. Another obfuscation technique is to periodically change network addresses.
Ask AI
Configure your API key to use AI features.