800-53|SC-7(9)

Title

RESTRICT THREATENING OUTGOING COMMUNICATIONS TRAFFIC

Description

The information system:

Supplemental

Detecting outgoing communications traffic from internal actions that may pose threats to external information systems is sometimes termed extrusion detection. Extrusion detection at information system boundaries as part of managed interfaces includes the analysis of incoming and outgoing communications traffic searching for indications of internal threats to the security of external systems. Such threats include, for example, traffic indicative of denial of service attacks and traffic containing malicious code.

Reference Item Details

Related: AU-2,AU-6,SC-38,SC-44,SI-3,SI-4

Category: SYSTEM AND COMMUNICATIONS PROTECTION

Parent Title: BOUNDARY PROTECTION

Family: SYSTEM AND COMMUNICATIONS PROTECTION

Audit Items

View all Reference Audit Items

NamePluginAudit Name
3.3.3 directed_broadcastUnixCIS IBM AIX 7.1 L1 v2.1.0
4.2.3 directed_broadcastUnixCIS IBM AIX 7.2 L1 v1.1.0
5.3 Ensure the default security group of every VPC restricts all traffic - 'No Inbound Rules existamazon_awsCIS Amazon Web Services Foundations L2 1.3.0
5.3 Ensure the default security group of every VPC restricts all traffic - 'No Outbound Rules existamazon_awsCIS Amazon Web Services Foundations L2 1.3.0
8.1 Ensure 'SSL Forward Proxy Policy' for traffic destined to the Internet is configured - Invalid CategoriesPalo_AltoCIS Palo Alto Firewall 7 Benchmark L1 v1.0.0
8.1 Ensure 'SSL Forward Proxy Policy' for traffic destined to the Internet is configured - Invalid CategoriesPalo_AltoCIS Palo Alto Firewall 6 Benchmark L1 v1.0.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 DC L1 v2.5.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 MS L1 v2.4.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 MS L1 v2.5.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2016 DC L1 v1.2.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 Member Server Level 1 v3.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2016 MS L1 v1.2.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 DC L1 v2.4.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 v3.2.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 + Bitlocker v3.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 v3.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 MS L1 v2.1.0
9.1.3 Ensure 'Windows Firewall: Domain: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 DC L1 v2.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2016 MS L1 v1.2.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 Member Server Level 1 v3.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 v3.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 v3.2.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 + Bitlocker v3.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 MS L1 v2.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 MS L1 v2.4.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 DC L1 v2.5.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2016 DC L1 v1.2.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 DC L1 v2.4.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 DC L1 v2.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.1.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 MS L1 v2.5.0
9.2.3 Ensure 'Windows Firewall: Private: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.1.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 v3.2.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 DC L1 v2.1.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 + Bitlocker v3.1.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.1.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 DC L1 v2.5.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 DC L1 v2.4.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.1.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.1.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Microsoft Windows Server 2016 MS L1 v1.2.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows Server 2012 R2 MS L1 v2.5.0
9.3.3 Ensure 'Windows Firewall: Public: Outbound connections' is set to 'Allow (default)'WindowsCIS Windows 7 Workstation Level 1 v3.1.0