1. Home
  2. Frameworks and Standards
  3. NIST SP 800-53
  4. NIST SP 800-53 – AC-4(4) – Information Flow Enforcement | Flow Control of Encrypted Information

NIST SP 800-53 – AC-4(4) – Information Flow Enforcement | Flow Control of Encrypted Information

Control(s)

Prevent encrypted information from bypassing [Assignment: organization-defined information flow control mechanisms] by [Selection (one or more): decrypting the information; blocking the flow of the encrypted information; terminating communications sessions attempting to pass encrypted information; [Assignment: organization-defined procedure or method]].

Additional Details (Discussion)

Flow control mechanisms include content checking, security policy filters, and data type identifiers. The term encryption is extended to cover encoded data not recognized by filtering mechanisms.

Related Control(s)

  • SI-4.

Reference(s)

Updated on July 16, 2022
Was this article helpful?

Related Articles