Skip to content

SC-7: Boundary Protection

An OSCAL Control

Statement

    • a.

      Monitor and control communications at the external managed interfaces to the system and at key internal managed interfaces within the system;

    • b.

      Implement subnetworks for publicly accessible system components that are separated from internal organizational networks; and

    • c.

      Connect to external networks or systems only through managed interfaces consisting of boundary protection devices arranged in accordance with an organizational security and privacy architecture.