Citation Tagging
Project 35867 –
Task 1100268
Instructions: Tag the Citation and add a corresponding Event if applicable. | Task Description: Tag the "3.4.1 4." Citation | Authority Document URL: Website URI Document URI |
Citation Reference: 3.4.1 4. Citation Guidance: Enterprise resources should not be reachable without accessing a PEP. Enterprise resources do not accept arbitrary incoming connections from the internet. Resources accept custom-configured connections only after a client has been authenticated and authorized. These communication paths are set up by the PEP. Resources may not even be discoverable without accessing a PEP. This prevents attackers from identifying targets via scanning and/or launching DoS attacks against resources located behind PEPs. Note that not all resources should be hidden this way; some network infrastructure components (e.g., DNS servers) must be accessible. |
Why are you sending the task back? (optional)