III - Administrative Sensitive
Rules and Groups employed by this XCCDF Profile
-
SRG-VOIP-000300
<GroupDescription></GroupDescription>Group -
The local Enterprise Voice, Video, and Messaging system must have the capability to place intrasite and local phone calls when network connectivity is severed from the remote centrally located session controller.
<VulnDiscussion>Voice phone services are critical to the effective operation of a business, an office, or in support or control of a DOD miss...Rule Medium Severity -
SRG-VOIP-000310
<GroupDescription></GroupDescription>Group -
The LAN hardware supporting VVoIP services must provide redundancy to support command and control (C2) assured services and Fire and Emergency Services (FES) communications.
<VulnDiscussion>Voice services in support of high-priority military command and control precedence must meet minimum requirements for reliabi...Rule Medium Severity -
SRG-VOIP-000320
<GroupDescription></GroupDescription>Group -
The LAN hardware supporting VVoIP services must provide physically diverse pathways for redundant links supporting command and control (C2) assured services and Fire and Emergency Services (FES) communications.
<VulnDiscussion>Voice services in support of high-priority military command and control precedence must meet minimum requirements for reliabi...Rule Medium Severity -
SRG-VOIP-000330
<GroupDescription></GroupDescription>Group -
The site's enclave boundary protection must route commercial VoIP traffic via a local Media Gateway (MG) connected to a commercial service provider using PRI, CAS, or POTS analog trunks.
<VulnDiscussion>There are several reasons VVoIP system access to local voice services must use a locally implemented MG connected to commerci...Rule Medium Severity -
SRG-VOIP-000340
<GroupDescription></GroupDescription>Group -
Local commercial phone service must be provided in support of continuity of operations (COOP) and Fire and Emergency Services (FES) communications.
<VulnDiscussion>Voice phone services are critical to the effective operation of the DOD mission. Phone service must be available an emergency...Rule Medium Severity -
SRG-VOIP-000350
<GroupDescription></GroupDescription>Group -
The enclave must be dual homed to two geographically diverse DISN SDNs and DISN WAN Service (NIPRNet or SIPRNet) Aggregation Routers (AR) or DISN Provider Edge (PE) routers.
<VulnDiscussion>Redundancy and dual homing is used within the DISN core to provide for continuity of operations (COOP) if a piece of equipmen...Rule Medium Severity -
SRG-VOIP-000360
<GroupDescription></GroupDescription>Group -
The dual homed DISN core access circuits must be implemented so that each one can support the full bandwidth engineered for the enclave plus additional bandwidth to support surge conditions in time of crisis.
<VulnDiscussion>Providing dual-homed access circuits from a command and control (C2) enclave to the DISN core is useless unless both circuits...Rule Medium Severity -
SRG-VOIP-000370
<GroupDescription></GroupDescription>Group -
The required dua- homed DISN Core or NIPRNet access circuits must follow geographically diverse paths from the CER(s) along the entire route to the geographically diverse SDNs.
<VulnDiscussion>One way to provide the greatest reliability and availability for DISN services is to provide redundancy in the network pathwa...Rule Medium Severity -
SRG-VOIP-000380
<GroupDescription></GroupDescription>Group -
Critical network equipment must be redundant and in geographically diverse locations for a site supporting command and control (C2) users.
<VulnDiscussion>The enhanced reliability and availability achieved by the implementation of redundancy and geographic diversity throughout th...Rule Low Severity -
SRG-VOIP-000390
<GroupDescription></GroupDescription>Group -
Enclaves with commercial VoIP connections must be approved by the DODIN Waiver Panel and signed by DOD CIO for a permanent alternate connection to the Internet Telephony Service Provider (ITSP).
<VulnDiscussion>The DOD requires the use of DISN services as the first choice to meet core communications needs. When additional services for...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.