Skip to content

Enterprise Voice, Video, and Messaging Policy Security Requirements Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-VOIP-000130

    <GroupDescription></GroupDescription>
    Group
  • An IP-based VTC system implementing a single CODEC that supports conferences on multiple networks with different classification levels (i.e., unclassified, SECRET, TOP SECRET, TS-SCI) must support Periods Processing by connecting the CODEC to one network at a time, matching the classification level of the session to the classification level of the network.

    &lt;VulnDiscussion&gt;Connecting to networks of different classifications simultaneously incurs the risk of data from a higher classification being...
    Rule High Severity
  • SRG-VOIP-000140

    <GroupDescription></GroupDescription>
    Group
  • An IP-based VTC system implementing a single CODEC that supports conferences on multiple networks with different classification levels (i.e., unclassified, SECRET, TOP SECRET, TS-SCI) must support Periods Processing sanitization by purging/clearing volatile memory within the CODEC by powering the CODEC off for a minimum of 60 seconds.

    &lt;VulnDiscussion&gt;Volatile memory requires power to maintain the stored information. It retains its contents while powered, but when power is i...
    Rule Medium Severity
  • SRG-VOIP-000150

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules