Secure Controls Framework

1,534 controls across 34 domains

Source: SCF 2026.2About SCF
securecontrolsframework.com
Back to catalog
MON-12MONContinuous Monitoring

Session Audit

Description

Mechanisms exist to provide session audit capabilities that can: (1) Capture and log all content related to a user session; and (2) Remotely view all content related to an established user session in real time.

Cross-Mappings

16 paths across 3 frameworks
NIST 800-531 mapping
AU-14
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI5 mappings
CCI-001919
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003844
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003845
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003846
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003847
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
STIG7 mappings
SV-102405r1_ruleThe SEL-2740S must be configured to packet capture flows.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · V1R1 · disa_xccdf · related
SV-204993r1015266_ruleThe ALG providing user access control intermediary services must provide the capability for authorized users to select a user session to capture or view.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · 2 · disa_xccdf · related
SV-219060r961863_ruleThe Mainframe Product must provide the capability for authorized users to select a user session to capture/record or view/hear.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · 3 · disa_xccdf · related
SV-220677r1015266_ruleThe Cisco switch must be configured for authorized users to select a user session to capture.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · V3R2 · disa_xccdf · related
SV-253952r1082341_ruleThe Juniper EX switch must be configured to permit authorized users to select a user session to capture.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · 2 · disa_xccdf · related
SV-79745r1_ruleThe DataPower Gateway providing user access control intermediary services must provide the capability for authorized users to select a user session to capture or view.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · V1R1 · disa_xccdf · related
SV-80549r1_ruleThe HP FlexFabric Switch must provide the capability for authorized users to select a user session to capture.
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • DISA · V1R3 · disa_xccdf · related

Control mappings provided by the Secure Controls Framework (SCF).

SCF

Powered by the Secure Controls Framework

The control catalog, cross-mappings, and STRM relationship data shown here are provided by the Secure Controls Framework (SCF), 2026.2. Every mapping is credited to SCF as the methodology, with the SCF reference and version stored alongside it.

© SCF Council, LLC. Secure Controls Framework content is free and shown here with attribution. securecontrolsframework.com · About SCF on STIGViewer