Skip to main content

πŸ’Ό CA-9 Internal System Connections

Description​

a. Authorize internal connections of [Assignment: organization-defined system components or classes of components] to the system; b. Document, for each internal connection, the interface characteristics, security and privacy requirements, and the nature of the information communicated; c. Terminate internal system connections after [Assignment: organization-defined conditions]; and d. Review [Assignment: organization-defined frequency] the continued need for each internal connection.

Similar​

  • Internal
    • ID: dec-c-d4a6f11a

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό CA-9 Internal System Connections (L)(M)(H)1
πŸ’Ό FedRAMP Low Security Controls β†’ πŸ’Ό CA-9 Internal System Connections (L)(M)(H)1
πŸ’Ό NIST CSF v2.0 β†’ πŸ’Ό ID.AM-03: Representations of the organization's authorized network communication and internal and external network data flows are maintained45

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CA-9(1) Internal System Connections _ Compliance Checks20

Policies (1)​

PolicyLogic CountFlags
πŸ“ Google GCE Network has Firewall Rules which allow unrestricted SSH access from the Internet 🟒1🟒 x6