NIST800-AC-4(27) AC-4(27) Information Flow Enforcement | Redundant/Independent Filtering Mechanisms
NIST800-AC-4(27) in NIST SP 800-53 Rev 5 (NIST SP 800-53 Rev 5, Release 5.2.0). All NIST SP 800-53 Rev 5 controls held. Open NIST SP 800-53 Rev 5 on the standards site.
The control as we hold it
AC-4(27) Information Flow Enforcement | Redundant/Independent Filtering Mechanisms. When transferring information between different security domains, implement content filtering solutions that provide redundant and independent filtering mechanisms for each data type.
Reviewed and closest counterparts in the other frameworks
We hold no cross-framework row for NIST800-AC-4(27) yet. The reviewed pairs page lists the released pairs and their coverage.
What an auditor commonly asks for
General guidance for this control area (domain: AC - Access Control), in our words, not a statement of the standard and not binding on an assessor.
- the access-control policy and procedures
- the account-management and privilege records
- the periodic access-review output