πΌ AC-4 INFORMATION FLOW ENFORCEMENT
- Contextual name: πΌ AC-4 INFORMATION FLOW ENFORCEMENT
- ID:
/frameworks/nist-sp-800-53-r4/ac/04
- Located in: πΌ AC ACCESS CONTROL
Descriptionβ
The information system enforces approved authorizations for controlling the flow of information within the system and between interconnected systems based on [Assignment: organization-defined information flow control policies].
Similarβ
- Internal
- ID:
dec-c-7e6eca71
- ID:
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ NIST CSF v1.1 β πΌ DE.AE-1: A baseline of network operations and expected data flows for users and systems is established and managed | 10 | 11 | ||
πΌ NIST CSF v1.1 β πΌ ID.AM-3: Organizational communication and data flows are mapped | 3 | 3 | ||
πΌ NIST CSF v1.1 β πΌ PR.AC-5: Network integrity is protected (e.g., network segregation, network segmentation) | 7 | 13 | ||
πΌ NIST CSF v1.1 β πΌ PR.DS-5: Protections against data leaks are implemented | 41 | 50 | ||
πΌ NIST CSF v1.1 β πΌ PR.PT-4: Communications and control networks are protected | 7 | 13 |