All Releasable Local Area Network (REL LAN) environments must be documented in the System Security Authorization Agreement (SSAA).

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-251378NET1815SV-251378r806089_ruleCCI-000366medium
Description
The ISSM will ensure Releasable Local Area Network (REL LAN) environments are documented in the SSAA.
STIGDate
Network Infrastructure Policy Security Technical Implementation Guide2024-08-02

Related Frameworks

4 paths across 3 frameworks
NIST 800-531 mapping
CM-6
1.00
  • DISA · V10R7 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1712 mappings
3.4.1
1.00
  • DISA · V10R7 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
3.4.2
1.00
  • DISA · V10R7 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-000366
1.00
  • DISA · V10R7 · disa_xccdf · related

Details

Check Text (C-251378r806089_chk)

Interview the ISSM and review the SSAA. GRE tunnels found on a premise or edge SIPRNet router that have an endpoint within the REL IP address space must be documented in the SSAA. If the REL LAN has not been documented in the SSAA, this is a finding.

Fix Text (F-54766r806088_fix)

The ISSM will document GRE tunnels defined on a premise or edge SIPRNet router that have an endpoint within the REL IP address space.