SC 41 PORT AND I O DEVICE ACCESS - NIST-SP-800-53-R5/NIST-SP-800-53-R5.github.io GitHub Wiki

SC-41 PORT AND I/O DEVICE ACCESS

Control: [ Selection: Physically; Logically ] disable or remove [ Assignment: organization-defined connection ports or input/output devices ] on the following systems or system components: [ Assignment: organization-defined systems or system components ].

Discussion: Connection ports include Universal Serial Bus (USB), Thunderbolt, and Firewire (IEEE 1394). Input/output (I/O) devices include compact disc and digital versatile disc drives. Disabling or removing such connection ports and I/O devices helps prevent the exfiltration of information from systems and the introduction of malicious code from those ports or devices. Physically disabling or removing ports and/or devices is the stronger action.

Related Controls: AC-20 , MP-7.

Control Enhancements: None.

References: None.

⚠️ **GitHub.com Fallback** ⚠️