1. Home
  2. Frameworks and Standards
  3. NIST SP 800-53
  4. NIST SP 800-53 – AC-4(6) – Information Flow Enforcement | Metadata

NIST SP 800-53 – AC-4(6) – Information Flow Enforcement | Metadata

Control(s)

Enforce information flow control based on [Assignment: organization-defined metadata].

Additional Details (Discussion)

Metadata is information that describes the characteristics of data. Metadata can include structural metadata describing data structures or descriptive metadata describing data content. Enforcement of allowed information flows based on metadata enables simpler and more effective flow control. Organizations consider the trustworthiness of metadata regarding data accuracy (i.e., knowledge that the metadata values are correct with respect to the data), data integrity (i.e., protecting against unauthorized changes to metadata tags), and the binding of metadata to the data payload (i.e., employing sufficiently strong binding techniques with appropriate assurance).

Related Control(s)

  • AC-16
  • SI-7.

Reference(s)

Updated on July 16, 2022
Was this article helpful?

Related Articles