All global address ranges used on unclassified and classified networks must be properly registered with the DoD Network Information Center (NIC).

From Network Infrastructure Policy Security Technical Implementation Guide

Part of Non-registered or unauthorized IP addresses.

Associated with: CCI-000366

SV-41919r3_rule All global address ranges used on unclassified and classified networks must be properly registered with the DoD Network Information Center (NIC).

Vulnerability discussion

If network address space is not properly configured, managed, and controlled, the network could be accessed by unauthorized personnel resulting in security compromise of site information and resources. Allowing subscribers onto the network whose IP addresses are not registered with the .Mil NIC may allow unauthorized users access into the network. These unauthorized users could then monitor the network, steal passwords, and access classified information.

Check content

Validate global IP addresses in use on unclassified or classified networks registered through the DoD Network Information Center. For NIPRNet, go to the website https://www.nic.mil. For SIPRNet, go to the web portal at http://www.ssc.smil.mil. To verify Department of the Navy IP addresses, go to http://infosec.navy.mil.ipaddress.com. If the site is using an address space that has not been registered and allocated to the site, this is a finding.

Fix text

Submit any unregistered and/or unauthorized global IP addresses to the DoD Network Information Center (NIC) for registration.

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer