# SC-46 Cross Domain Policy Enforcement

NIST SP 800-53 control. Family: SC System and Communications Protection. Function: preventative. In no baseline. Mapping licence: CC BY-SA 4.0.

Statement: Implement a policy enforcement mechanism [Selection (one): physically; logically] between the physical and/or network interfaces for the connecting security domains.
Guidance: For logical policy enforcement mechanisms, organizations avoid creating a logical path between interfaces to prevent the ability to bypass the policy enforcement mechanism. For physical policy enforcement mechanisms, the robustness of physical isolation afforded by the physical implementation of policy enforcement to preclude the presence of logical covert channels penetrating the security domain may be needed. Contact ncdsmo@nsa.gov for more information.

## Clauses by framework (24 frameworks)
- iso_27002_2022: 5.14
- finos_ccc: CCC-C09
- iec_62443: 3-3 SR 5.1, 3-3 SR 5.2
- bsi_grundschutz: NET.1.1
- anssi: Hygiene.17, Hygiene.23, SecNumCloud.14.1
- finma_circular: IV.B.d(59), IV.C(62)
- dora: Art.9(4)(a)
- bio2: 5.14
- rbi_csf: Annex1.4
- fisc: FISC.T3, FISC.T13
- hkma_tme1: TME1.7.3
- nca_ecc: 2-5, 5-1
- qatar_nia: CS
- bom_ctrm: 3.2
- iosco_cyber: PROT-2
- nrc_73_54: 73.54(c)(2), RG5.71-A-SC
- tsa_psd: SD-2 Sec A
- doe_c2m2: ARCHITECTURE
- api_1164: Sec 5
- awia: AWWA Sec 4
- iaea_nss: Sec 5.1
- iso_27799: 13.1, H.2
- lloyds_ms: MS8.9
- solvency_ii: EIOPA-ICT-4.6

## More
- This control as JSON, with guidance and ATT&CK techniques: /api/v1/controls/SC-46
- Clauses only: /api/v1/controls/SC-46?fields=mappings
- Page for people: /controls/sc-46/
- Found an error? Open an issue at https://github.com/opensecurityarchitecture/osa-data/issues with the id, what OSA says and what the source says.
