NIST 800-171 v2

110 security requirements available

3.7.5Derived Requirement

Maintenance

Security Requirement

Require multifactor authentication to establish nonlocal maintenance sessions via external network connections and terminate such connections when nonlocal maintenance is complete.

Discussion

Nonlocal maintenance and diagnostic activities are those activities conducted by individuals communicating through an external network. The authentication techniques employed in the establishment of these nonlocal maintenance and diagnostic sessions reflect the network access requirements in 3.5.3.

Framework
NIST SP 800-171 Rev 2
Family
Maintenance
Requirement Type
derived

Related Frameworks

9 paths across 2 frameworks
NIST 800-531 mapping
MA-4
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI8 mappings
CCI-000873
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000874
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000876
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000877
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000878
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000879
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004190
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004191
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

108 STIGs reach this control through 27 CCIs via 800-53 control MA-4. Expand a row to see the responsible NICE and O*NET roles.

Operating System — Desktop

3 STIGs

Operating System — Server

38 STIGs
Show 30 more STIGs in this category →
Oracle Linux 9 Security Technical Implementation Guide
V1R52026-02-173 of 448 findings match
Anduril NixOS Security Technical Implementation Guide
V1R22025-08-192 of 103 findings match
Oracle Linux 8 Security Technical Implementation Guide
V2R82026-02-132 of 375 findings match
IBM AIX 7.x Security Technical Implementation Guide
V3R22026-02-061 of 283 findings match
IBM AIX 7.x Security Technical Implementation Guide
32024-08-161 of 283 findings match

Operating System — Mainframe

2 STIGs
Mainframe Product Security Requirements Guide
V3R42025-09-105 of 194 findings match
Mainframe Product Security Requirements Guide
32024-12-055 of 193 findings match

Network Device

45 STIGs
Cisco ISE NDM Security Technical Implementation Guide
V2R32025-12-113 of 53 findings match
Network Device Management Security Requirements Guide
V5R32025-02-113 of 104 findings match
Network Device Management Security Requirements Guide
V5R42025-09-103 of 105 findings match
Cisco ASA NDM Security Technical Implementation Guide
V2R42025-12-082 of 47 findings match
Show 37 more STIGs in this category →
Domain Name System (DNS) Security Requirements Guide
V4R22025-12-192 of 119 findings match
F5 NGINX Security Technical Implementation Guide
V1R12026-01-071 of 32 findings match
SEL-2740S NDM Security Technical Implementation Guide
V1R12019-05-061 of 13 findings match

Database

2 STIGs
Database Security Requirements Guide
V4R52026-02-261 of 142 findings match
Database Security Requirements Guide
42024-12-041 of 142 findings match

Web / Application Server

6 STIGs
Application Server Security Requirements Guide
V4R42025-09-101 of 137 findings match
Application Server Security Requirements Guide
42025-02-111 of 128 findings match
Web Server Security Requirements Guide
V4R42025-09-101 of 126 findings match
Web Server Security Requirements Guide
42025-02-121 of 124 findings match

Virtualization / Container

6 STIGs

Endpoint Security Management

6 STIGs