Skip to main content

💼 CA-3 SYSTEM INTERCONNECTIONS

  • ID: /frameworks/nist-sp-800-53-r4/ca/03

Description

The organization: CA-3a. Authorizes connections from the information system to other information systems through the use of Interconnection Security Agreements; CA-3b. Documents, for each interconnection, the interface characteristics, security requirements, and the nature of the information communicated; and CA-3c. Reviews and updates Interconnection Security Agreements [Assignment: organization-defined frequency].

Similar

  • Internal
    • ID: dec-c-d8a7eec3

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 DE.AE-1: A baseline of network operations and expected data flows for users and systems is established and managed1034no data
💼 NIST CSF v1.1 → 💼 ID.AM-3: Organizational communication and data flows are mapped48no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CA-3 (1) UNCLASSIFIED NATIONAL SECURITY SYSTEM CONNECTIONSno data
💼 CA-3 (2) CLASSIFIED NATIONAL SECURITY SYSTEM CONNECTIONSno data
💼 CA-3 (3) UNCLASSIFIED NON-NATIONAL SECURITY SYSTEM CONNECTIONSno data
💼 CA-3 (4) CONNECTIONS TO PUBLIC NETWORKSno data
💼 CA-3 (5) RESTRICTIONS ON EXTERNAL SYSTEM CONNECTIONSno data

Policies (2)

PolicyLogic CountFlagsCompliance
🛡️ Google Cloud SQL Instance External Authorized Networks whitelists all public IP addresses🟢1🟢 x6no data
🛡️ Google GCE Instance has a public IP address🟢1🟢 x6no data