|
controlSC-20
Secure Name/Address Resolution Service (Authoritative Source) (SC-20)
Provide additional data origin authentication and integrity verification artifacts along with the authoritative name resolution data the system returns in response to external name/address resolution queries; and Provide the means to indicate the security status of child zones and (if the child supports secure resolution services) to enable verification of a chain of trust among parent and child domains, when operating as part of a distributed, hierarchical namespace.
Security Baselines
LOWMODERATEHIGH
communicationsencryptionboundary-protectionnetwork
Why These Connect
Baselined In3
This control is included in the linked security baseline (LOW, MODERATE, or HIGH).
Supports9
These related controls work together — a change to one may affect the others.
Enhances2
These enhancements add specific capabilities or refinements to the base control.
Related Controls(6)
SC-8Transmission Confidentiality and Integrity (SC-8)
MH
SC-12Cryptographic Key Establishment and Management (SC-12)LMH
SC-13Cryptographic Protection (SC-13)LMH
AU-10Non-repudiation (AU-10)H
SC-21Secure Name/Address Resolution Service (Recursive or Caching Resolver) (SC-21)LMH
SC-22Architecture and Provisioning for Name/Address Resolution Service (SC-22)LMH