An A/B switches are used with ISs of differing classification levels that are not on the approved lists.

From Keyboard, Video, Mouse Switch Security STIG

Part of A/B switch on ISs of Different Classification

Associated with IA controls: DCBP-1

SV-6981r1_rule An A/B switches are used with ISs of differing classification levels that are not on the approved lists.

Vulnerability discussion

An A/B switch not found on the Approved KVM and A/B Switch lists has not been tested to verify that it does not leak data between systems. This can lead to the compromise of sensitive data or the compromise of the ISs attached to the A/B switch.The IAO will ensure that only approved KVM or A/B switches are used with ISs of differing classification levels.

Check content

The reviewer will verify that the KVM or A/B switch attached to ISs of different classification levels exists on one of the following lists. 1. The National Information Assurance Partnership (NIAP) National Information Assurance Certification and Accreditation Process (NIACAP) List. 2. DISN Security Accreditation Working Group (DSAWG) Approved KVM Switch List. The SIPRNet Connection Approval Office (SCAO) will maintain a DISN Approved Products List. To locate the NIACAP list: Go to http://niap.nist.gov/and follow the link to “Validated Products” found in the left most column of the screen. On the Validated Products page follow the link to “Peripheral Switch” found in the bottom row second column of the table. To Locate the DSAWG list. Go to https://iase.disa.mil/cap. This information is located under the document titled DISN Peripheral Sharing Device Guidance. Refer to the power point file of the document to locate the list.

Fix text

Replace the A/B switch with one from the approved KVM and A/B switch lists. If there is no A/B switch on the lists that performs the function needed, remove the A/B switch and obtain whatever hardware is need to restore the functionality required.

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer