Skip to main content

💼 CA-9 Internal System Connections

Description

a. Authorize internal connections of [Assignment: organization-defined system components or classes of components] to the system; b. Document, for each internal connection, the interface characteristics, security and privacy requirements, and the nature of the information communicated; c. Terminate internal system connections after [Assignment: organization-defined conditions]; and d. Review [Assignment: organization-defined frequency] the continued need for each internal connection.

Similar

  • Internal
    • ID: dec-c-d4a6f11a

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlags
💼 FedRAMP High Security Controls → 💼 CA-9 Internal System Connections (L)(M)(H)1
💼 FedRAMP Low Security Controls → 💼 CA-9 Internal System Connections (L)(M)(H)1
💼 NIST CSF v2.0 → 💼 ID.AM-03: Representations of the organization's authorized network communication and internal and external network data flows are maintained48

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlags
💼 CA-9(1) Internal System Connections _ Compliance Checks21

Policies (1)

PolicyLogic CountFlags
📝 Google GCE Network has Firewall Rules which allow unrestricted SSH access from the Internet 🟢1🟢 x6