3.13.6

  • Requirement

    Deny network communications traffic by default and allow network communications traffic by exception (i.e., deny all, permit by exception).

  • Discussion

    This requirement applies to inbound and outbound network communications traffic at the system boundary and at identified points within the system. A deny-all, permit-by-exception network communications traffic policy ensures that only those connections which are essential and approved are allowed.

More Info

  • Family

    System and Communications Protection
  • DoD Scoring Methodology Points

    5
  • Related CMMC ID

  • Related NIST 800-53 ID

    SC-7(5)
  • Reference Documents

    • N/A

NIST 800-171A Assessment Guidance

CMMC Training

Our CMMC Overview Course simplifies CMMC. Enroll so you can make informed decisions!