SC-07.22 ยท Separate Subnets for Connecting to Different Security Domains

Control Description

Implement separate network addresses to connect to systems in different security domains.

Impact Baselines
Security baselines where this control applies
Not in any baseline
Control Properties
SP800-53-enhancement
system
Assurance
Enhancement
Control Statement
The control requirements

Implement separate network addresses to connect to systems in different security domains.

Supplemental Guidance

The decomposition of systems into subnetworks (i.e., subnets) helps to provide the appropriate level of protection for network connections to different security domains that contain information with different security categories or classification levels.