|
|
UNCLASSIFIED Chapter 11
Telecommunications Systems
74 UNCLASSIFIED d)
Configuration of the system shall ensure that all on-hook and off-hook vulnerabilities are mitigated. e)
Equipment used for administration of telephone systems shall be installed inside the SCIF or a controlled area where access is limited to authorized personnel. f)
When local or remote CTS administration terminals are not contained within a controlled area and safeguarded against unauthorized manipulation, the use of CNSSI g)
Speakerphones and audio conferencing systems shall not be used on unclassified telephone systems in SCIFs. Exceptions to this requirement may be approved by the h)
Features used for voice mail or unified messaging services shall be configured to prevent access to remote diagnostic ports, internal dial tone, and dial plans. i)
Telephone answering devices and facsimile machines shall not contain features that introduce security vulnerabilities, e.g., remote room monitoring, remote j)
All unclassified telephone systems and associated infrastructure shall be physically isolated from classified information and telecommunications systems in k)
The security requirements and installation guidelines contained in the National Telecommunications Security Working Group (NTSWG) publication CNSSI 5000 C.
Unclassified Information Systems 1.
Unclassified information systems shall be safeguarded to prevent hardware or software manipulation that could result in the compromise of data. 2.
Information systems equipment with telephonic or audio features shall be protected against remote activation and/or removal of audio (analog or digitized) information. 3.
Video cameras used for unclassified video teleconferencing and video recording equipment shall be deactivated and disconnected when not in use. 4.
Video devices shall feature a clearly visible indicator to alert SCIF personnel when recording or transmitting. |