UCF STIG Viewer Logo

Boundary protection applications must be capable of preventing public access into the organizations internal networks except as appropriately mediated by managed interfaces.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35675 SRG-APP-000255-MAPP-NA SV-46962r1_rule Medium
Description
Access into an organization's internal network and to key internal boundaries must be tightly controlled and managed. Applications monitoring and/or controlling communications at the external boundary of the system and at key internal boundaries must be capable of preventing public access into the organization's internal networks except as appropriately mediated by managed interfaces. Rationale for non-applicability: Mobile applications do not provide network services to other devices. Most mobile devices function outside the organization's security boundary and therefore are not positioned to provide boundary protection services in any case.
STIG Date
Mobile Application Security Requirements Guide 2013-01-04

Details

Check Text ( C-44017r1_chk )
This requirement is NA for the MAPP SRG.
Fix Text (F-40217r1_fix)
The requirement is NA. No fix is required.