Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-35675 | SRG-APP-000255-MAPP-NA | SV-46962r1_rule | Medium |
Description |
---|
Access into an organization's internal network and to key internal boundaries must be tightly controlled and managed. Applications monitoring and/or controlling communications at the external boundary of the system and at key internal boundaries must be capable of preventing public access into the organization's internal networks except as appropriately mediated by managed interfaces. Rationale for non-applicability: Mobile applications do not provide network services to other devices. Most mobile devices function outside the organization's security boundary and therefore are not positioned to provide boundary protection services in any case. |
STIG | Date |
---|---|
Mobile Application Security Requirements Guide | 2013-01-04 |
Check Text ( C-44017r1_chk ) |
---|
This requirement is NA for the MAPP SRG. |
Fix Text (F-40217r1_fix) |
---|
The requirement is NA. No fix is required. |