Skip to content

No profile (default benchmark)

Rules and Groups employed by this XCCDF Profile

  • SRG-VOIP-000150

    <GroupDescription></GroupDescription>
    Group
  • IP-based VTC systems implementing a single CODEC that support conferences on multiple networks with different classification levels must sanitize nonvolatile memory while transitioning between networks by overwriting all configurable parameters with null settings before reconfiguring the CODEC for connection to the next network.

    &lt;VulnDiscussion&gt;A factory reset is the software restoration of an electronic device to its original system state by erasing all information s...
    Rule Medium Severity
  • SRG-VOIP-000160

    <GroupDescription></GroupDescription>
    Group
  • The A/B, A/B/C, or A/B/C/D switch within an IP-based VTC system that supports conferences on multiple networks with different classification levels must be based on optical technologies to maintain electrical isolation between the various networks to which it connects.

    &lt;VulnDiscussion&gt;The A/B, A/B/C, or A/B/C/D switch is physically connected to multiple networks that have different classification levels. Cop...
    Rule Medium Severity
  • SRG-VOIP-000170

    <GroupDescription></GroupDescription>
    Group
  • An IP-based VTC system implementing a single CODEC that supports conferences on multiple networks with different classification levels must be implemented in such a way that configuration information for a network having a higher classification level is not disclosed to a network having a lower classification level.

    &lt;VulnDiscussion&gt;Connecting the CODEC to a network while it is being reconfigured could lead to the disclosure of sensitive configuration info...
    Rule Medium Severity
  • SRG-VOIP-000180

    <GroupDescription></GroupDescription>
    Group
  • The A/B, A/B/C, or A/B/C/D switch used for network switching in IP-based VTC systems implementing a single CODEC that supports conferences on multiple networks with different classification levels must be Common Criteria certified.

    &lt;VulnDiscussion&gt;Common Criteria provides assurance that the process of specification, implementation, and evaluation of a computer security p...
    Rule Medium Severity
  • SRG-VOIP-000190

    <GroupDescription></GroupDescription>
    Group
  • The A/B, A/B/C, or A/B/C/D switch used for network switching in IP-based VTC systems implementing a single CODEC that supports conferences on multiple networks with different classification levels must be TEMPEST certified.

    &lt;VulnDiscussion&gt;Committee on National Security Systems Advisory Memorandum (CNSSAM) TEMPEST/01-13, RED/BLACK Installation Guidance, provides ...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules