SC-23 ยท Session Authenticity

Control Description

Protect the authenticity of communications sessions.

Impact Baselines
Security baselines where this control applies
Not in any baseline
Control Properties
SP800-53
system
Control Statement
The control requirements

Protect the authenticity of communications sessions.

Supplemental Guidance

Protecting session authenticity addresses communications protection at the session level, not at the packet level. Such protection establishes grounds for confidence at both ends of communications sessions in the ongoing identities of other parties and the validity of transmitted information. Authenticity protection includes protecting against "man-in-the-middle" attacks, session hijacking, and the insertion of false information into sessions.

Related NIST Controls
Other NIST 800-53 controls related to this one