
Without verifying the destination address of traffic. The Cisco perimeter router must be configured to protect an enclave connected to an alternate gateway by using an inbound filter that only permits packets with destination addresses within the sites address space.Įnclaves with alternate gateway connections must take additional steps to ensure there is no compromise on the enclave network or NIPRNet. This requirement applies to both inbound and. The Cisco perimeter router must be configured to deny network traffic by default and allow network traffic by exception.Ī deny-all, permit-by-exception network communications traffic policy ensures that only connections that are essential and approved are allowed.


Findings (MAC III - Administrative Sensitive) Finding ID
