Connections between the DoD enclave and the Internet or other public or commercial wide area networks must require a DMZ.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
|---|---|---|---|---|---|---|
| medium | V-222671 | SRG-APP-000516 | APSC-DV-003350 | SV-222671r961863_rule | 2025-02-12 | 6 |
| Description |
|---|
| In order to protect DoD data and systems, all remote access to DoD information systems must be mediated through a managed access control point, such as a remote access server in a DMZ. |
| ℹ️ Check |
|---|
| Interview the application representative and determine if the application is publicly accessible. If the application is publicly accessible and traffic is not being routed through a DMZ, this is a finding. |
| ✔️ Fix |
|---|
| Setup a DMZ between DoD and public networks. |