STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 2 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← AC-4 (19) — Information Flow Enforcement

CCI-002211

Definition

When transferring information between different security domains, implement organization-defined security or privacy filters on metadata.

Parent Control

AC-4 (19)Information Flow EnforcementAccess Control

Linked STIG Checks (4)

V-204991CAT IIThe ALG that is part of a CDS, when transferring information between different security domains, must apply the same security policy filtering to metadata as it applies to data payloads.Application Layer Gateway Security Requirements GuideV-278985CAT IIThe layer 2 switch, when transferring information between different security domains, must apply the same security policy filtering to metadata as it applies to data payloads.Layer 2 Switch Security Requirements GuideV-279004CAT IIWhen transferring information between different security domains, the router must apply the same security policy filtering to metadata as it applies to data payloads.Router Security Requirements GuideV-279023CAT IIThe VPN Gateway, when transferring information between different security domains, must apply the same security policy filtering to metadata as it applies to data payloads.Virtual Private Network (VPN) Security Requirements Guide