← Back to catalog
SC-41
Port and I/O Device Access
System and Communications Protection (SC)
Baselines
Low · Not includedModerate · Not includedHigh · Not included
Description
[assignment] disable or remove [assignment] on the following systems or system components: [assignment].
Discussion
Connection ports include Universal Serial Bus (USB), Thunderbolt, and Firewire (IEEE 1394). Input/output (I/O) devices include compact disc and digital versatile disc drives. Disabling or removing such connection ports and I/O devices helps prevent the exfiltration of information from systems and the introduction of malicious code from those ports or devices. Physically disabling or removing ports and/or devices is the stronger action.
Implementation guidance
No content available.
CSF 2.0 crosswalk
No CSF mappings exist for this control.