Skip to content

Enterprise Voice, Video, and Messaging Policy Security Requirements Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-VOIP-000460

    <GroupDescription></GroupDescription>
    Group
  • Sufficient backup power must be provided for LAN infrastructure, WAN boundary, VVoIP infrastructure, and VVoIP endpoints to support non-command and control (C2) user accessible endpoints for emergency life safety and security calls.

    &lt;VulnDiscussion&gt;Unified Capabilities (UC) users require different levels of capability depending on command and control needs. Special-C2 dec...
    Rule Low Severity
  • SRG-VOIP-000470

    <GroupDescription></GroupDescription>
    Group
  • The Session Border Controller (SBC) must filter inbound SIP and AS-SIP traffic based on the IP addresses of the internal Enterprise Session Controller (ESC), Local Session Controller (LSC), or Multifunction Soft Switch (MFSS).

    &lt;VulnDiscussion&gt;The SBC is in the VVoIP signaling between the LSC and MFSS. To limit exposure to compromise and denial of service, the SBC mu...
    Rule Medium Severity
  • SRG-VOIP-000480

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules