STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 21 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← All Controls

SC-5

System and Communications ProtectionRev 5system

Denial-of-service Protection

Baselines:LowModerateHigh

Control Statement

a. [Selection: organization-defined value] the effects of the following types of denial-of-service events: [Assignment: types of denial-of-service events] ; and b. Employ the following controls to achieve the denial-of-service objective: [Assignment: controls by type of denial-of-service event].

Supplemental Guidance

Denial-of-service events may occur due to a variety of internal and external causes, such as an attack by an adversary or a lack of planning to support organizational needs with respect to capacity and bandwidth. Such attacks can occur across a wide range of network protocols (e.g., IPv4, IPv6). A variety of technologies are available to limit or eliminate the origination and effects of denial-of-service events. For example, boundary protection devices can filter certain types of packets to protect system components on internal networks from being directly affected by or the source of denial-of-service attacks. Employing increased network capacity and bandwidth combined with service redundancy also reduces the susceptibility to denial-of-service events.

Related Controls (5)

CP-2IR-4SC-6SC-7SC-40

CCI Identifiers (6)

CCI-004866Employ organization-defined controls by type of denial-of-service to achieve the denial-of-service objective.CCI-001092The information system protects against or limits the effects of the organization-defined or referenced types of denial of service attacks.CCI-001093Defines the types of denial-of-service events for protecting against or limiting the effects of the denial-of-service events.CCI-004867Defines the controls by type of denial-of-service event by employing the controls to achieve the denial-of-service objective.CCI-002385Protect against or limit the effects of organization-defined types of denial-of-service events.CCI-002386The organization defines the security safeguards to be employed to protect the information system against, or limit the effects of, denial of service attacks.

Linked STIG Checks (200)

Across 42 STIGs. Click to expand.