<?xml version="1.0"?>

<rss version="2.0">


<channel>
<title>Home - All Categories - NIST 800-171  - Access Control  </title>
<link>http://www.compliancewiki.org/category/nist-800-171/access-control/34/</link>
<description>This RSS Feed contains Articles of Category in the knowledge base. You can click on the title to view its content. Powered by PHPKB (https://www.phpkb.com)</description>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-separation-of-duties-3-1-4-109.html</guid>
										<title>NIST 800-171 - Separation of Duties &#40;3.1.4&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-separation-of-duties-3-1-4-109.html</link>
										<description><![CDATA[Overview:Separate the duties of individuals to reduce the risk of malevolent activity without collusion. Action Items:3.1.4[a]Determine if: the duties of individuals requiring separation are defined. 3.1.4[b]Determine if: responsibilities for duties...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-use-of-external-information-systems-3-1-20-125.html</guid>
										<title>NIST 800-171 - Use of External Information Systems &#40;3.1.20&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-use-of-external-information-systems-3-1-20-125.html</link>
										<description><![CDATA[Overview:Verify and control/limit connections to and use of external information systems. Action Items:3.1.20[a]Determine if: connections to external systems are identified. 3.1.20[b]Determine if: the use of external systems is identified. 3.1.20[c...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-manage-access-control-points-3-1-14-119.html</guid>
										<title>NIST 800-171 - Manage Access Control Points &#40;3.1.14&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-manage-access-control-points-3-1-14-119.html</link>
										<description><![CDATA[Overview:Route remote access via managed access control points. Action Items:3.1.14[a]Determine if: managed access control points are identified and implemented. 3.1.14[b]Determine if: remote access is routed through managed network access control...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-remote-access-monitoring-3-1-12-117.html</guid>
										<title>NIST 800-171 - Remote Access Monitoring &#40;3.1.12&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-remote-access-monitoring-3-1-12-117.html</link>
										<description><![CDATA[Overview:Monitor and control remote access sessions. Action Items:3.1.12[a]Determine if: remote access sessions are permitted. 3.1.12[b]Determine if: the types of permitted remote access are identified. 3.1.12[c]Determine if: remote access sessions...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-use-of-portable-storage-devices-on-external-systems-3-1-21-126.html</guid>
										<title>NIST 800-171 - Use of Portable Storage Devices on External Systems &#40;3.1.21&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-use-of-portable-storage-devices-on-external-systems-3-1-21-126.html</link>
										<description><![CDATA[Overview:Limit use of organizational portable storage devices on external information systems. Action Items:3.1.21[a]Determine if: the use of portable storage devices containing CUI on external systems is identified and documented. 3.1.21[b]Determine...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-encrypting-remote-access-3-1-13-118.html</guid>
										<title>NIST 800-171 - Encrypting Remote Access &#40;3.1.13&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-encrypting-remote-access-3-1-13-118.html</link>
										<description><![CDATA[Overview:Employ cryptographic mechanisms to protect the confidentiality of remote access sessions. Action Items:3.1.13[a]Determine if: cryptographic mechanisms to protect the confidentiality of remote access sessions are identified. 3.1.13[b...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-information-flow-enforcement-3-1-3-108.html</guid>
										<title>NIST 800-171 - Information Flow Enforcement &#40;3.1.3&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-information-flow-enforcement-3-1-3-108.html</link>
										<description><![CDATA[Overview:Control the flow of CUI in accordance with approved authorizations. Action Items:3.1.3[a]Determine if: information flow control policies are defined. 3.1.3[b]Determine if: methods and enforcement mechanisms for controlling the flow of CUI...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-non-privileged-account-use-3-1-6-111.html</guid>
										<title>NIST 800-171 - Non-privileged Account Use &#40;3.1.6&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-non-privileged-account-use-3-1-6-111.html</link>
										<description><![CDATA[Overview:Use non-privileged accounts or roles when accessing non-security functions. Action Items:3.1.6[a]Determine if: nonsecurity functions are identified. 3.1.6[b]Determine if: users are required to use non-privileged accounts or roles when...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-access-control-for-mobile-devices-3-1-18-123.html</guid>
										<title>NIST 800-171 - Access Control for Mobile Devices &#40;3.1.18&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-access-control-for-mobile-devices-3-1-18-123.html</link>
										<description><![CDATA[Overview:Control connection of mobile devices. Action Items:3.1.18[a]Determine if: mobile devices that process, store, or transmit CUI are identified. 3.1.18[b]Determine if: mobile device connections are authorized. 3.1.18[c]Determine if: mobile...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-session-lock-3-1-10-115.html</guid>
										<title>NIST 800-171 - Session Lock &#40;3.1.10&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-session-lock-3-1-10-115.html</link>
										<description><![CDATA[Overview:Use session lock with pattern-hiding displays to prevent access/viewing of data after period of inactivity. Action Items:3.1.10[a]Determine if: the period of inactivity after which the system initiates a session lock is defined. 3.1.10[b...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-public-accessible-content-3-1-22-127.html</guid>
										<title>NIST 800-171 - Public Accessible Content &#40;3.1.22&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-public-accessible-content-3-1-22-127.html</link>
										<description><![CDATA[Overview:Control information posted or processed on publicly accessible information systems. Action Items:3.1.22[a]Determine if: individuals authorized to post or process information on publicly accessible systems are identified. 3.1.22[b]Determine...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-system-use-notification-3-1-9-114.html</guid>
										<title>NIST 800-171 - System Use Notification &#40;3.1.9&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-system-use-notification-3-1-9-114.html</link>
										<description><![CDATA[Overview:Provide privacy and security notices consistent with applicable CUI rules. Action Items:3.1.9[a]Determine if: privacy and security notices required by CUI-specified rules are identified, consistent, and associated with the specific CUI...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-session-termination-3-1-11-116.html</guid>
										<title>NIST 800-171 - Session Termination &#40;3.1.11&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-session-termination-3-1-11-116.html</link>
										<description><![CDATA[Overview:Terminate (automatically) a user session after a defined condition. Action Items:3.1.11[a]Determine if: conditions requiring a user session to terminate are defined. 3.1.11[b]Determine if: a user session is automatically terminated after any...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-wireless-access-authorization-3-1-16-121.html</guid>
										<title>NIST 800-171 - Wireless Access Authorization &#40;3.1.16&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-wireless-access-authorization-3-1-16-121.html</link>
										<description><![CDATA[Overview:Authorize wireless access prior to allowing such connections. Action Items:3.1.16[a]Determine if: wireless access points are identified. 3.1.16[b]Determine if: wireless access is authorized prior to allowing such connections. POTENTIAL...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-audit-of-privileged-use-3-1-7-112.html</guid>
										<title>NIST 800-171 - Audit of Privileged Use &#40;3.1.7&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-audit-of-privileged-use-3-1-7-112.html</link>
										<description><![CDATA[Overview:Prevent non-privileged users from executing privileged functions and audit the execution of such functions. Action Items:3.1.7[a]Determine if: privileged functions are defined. 3.1.7[b]Determine if: non-privileged users are defined. 3.1.7[c...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-encrypt-data-on-mobile-devices-3-1-19-124.html</guid>
										<title>NIST 800-171 - Encrypt Data on Mobile Devices &#40;3.1.19&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-encrypt-data-on-mobile-devices-3-1-19-124.html</link>
										<description><![CDATA[Overview:Encrypt CUI on mobile devices. Action Items:3.1.19[a]Determine if: mobile devices and mobile computing platforms that process, store, or transmit CUI are identified. 3.1.19[b]Determine if: encryption is employed to protect CUI on identified...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-account-management-3-1-1-106.html</guid>
										<title>NIST 800-171 - Account Management &#40;3.1.1&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-account-management-3-1-1-106.html</link>
										<description><![CDATA[Overview:Limit system access to authorized users, processes acting on behalf of authorized users, and devices (including other systems). Action Items:3.1.1[a]Determine if: authorized users are identified. 3.1.1[b]Determine if: Processes acting on...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-wireless-access-encryption-3-1-17-122.html</guid>
										<title>NIST 800-171 - Wireless Access Encryption &#40;3.1.17&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-wireless-access-encryption-3-1-17-122.html</link>
										<description><![CDATA[Overview:Protect wireless access using authentication and encryption. Action Items:3.1.17[a]Determine if: wireless access to the system is protected using authentication. 3.1.17[b]Determine if: wireless access to the system is protected using...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-unsuccessful-logon-attempts-3-1-8-113.html</guid>
										<title>NIST 800-171 - Unsuccessful Logon Attempts &#40;3.1.8&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-unsuccessful-logon-attempts-3-1-8-113.html</link>
										<description><![CDATA[Overview:Limit unsuccessful logon attempts. Action Items:3.1.8[a]Determine if: the means of limiting unsuccessful logon attempts is defined. 3.1.8[b]Determine if: the defined means of limiting unsuccessful logon attempts is implemented. POTENTIAL...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-least-privilege-3-1-5-110.html</guid>
										<title>NIST 800-171 - Least Privilege &#40;3.1.5&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-least-privilege-3-1-5-110.html</link>
										<description><![CDATA[Overview:Employ the principle of least privilege, including for specific security functions and privileged accounts. Action Items:3.1.5[a]Determine if: privileged accounts are identified. 3.1.5[b]Determine if: access to privileged accounts is...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-access-enforcement-3-1-2-107.html</guid>
										<title>NIST 800-171 - Access Enforcement &#40;3.1.2&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-access-enforcement-3-1-2-107.html</link>
										<description><![CDATA[Overview:Limit information system access to the types of transactions and functions that authorized users are permitted to execute. Action Items:3.1.2[a]Determine if: the types of transactions and functions that authorized users are permitted to...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/nist-800-171-remote-access-authorization-3-1-15-120.html</guid>
										<title>NIST 800-171 - Remote Access Authorization &#40;3.1.15&#41;</title>
										<link>http://www.compliancewiki.org/article/nist-800-171-remote-access-authorization-3-1-15-120.html</link>
										<description><![CDATA[Overview:Authorize remote execution of privileged commands and remote access to security-relevant information. Action Items:3.1.15[a]Determine if: privileged commands authorized for remote execution are identified. 3.1.15[b]Determine if: security...]]></description>

									</item>

</channel>

</rss>