STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← All Controls

SC-5

System and Communications ProtectionRev 5system

Denial-of-service Protection

Baselines:LowModerateHigh

Control Statement

a. [Selection: organization-defined value] the effects of the following types of denial-of-service events: [Assignment: types of denial-of-service events] ; and b. Employ the following controls to achieve the denial-of-service objective: [Assignment: controls by type of denial-of-service event].

Supplemental Guidance

Denial-of-service events may occur due to a variety of internal and external causes, such as an attack by an adversary or a lack of planning to support organizational needs with respect to capacity and bandwidth. Such attacks can occur across a wide range of network protocols (e.g., IPv4, IPv6). A variety of technologies are available to limit or eliminate the origination and effects of denial-of-service events. For example, boundary protection devices can filter certain types of packets to protect system components on internal networks from being directly affected by or the source of denial-of-service attacks. Employing increased network capacity and bandwidth combined with service redundancy also reduces the susceptibility to denial-of-service events.

Related Controls (5)

CP-2IR-4SC-6SC-7SC-40

CCI Identifiers (6)

CCI-002386The organization defines the security safeguards to be employed to protect the information system against, or limit the effects of, denial of service attacks.CCI-001092The information system protects against or limits the effects of the organization-defined or referenced types of denial of service attacks.CCI-001093Defines the types of denial-of-service events for protecting against or limiting the effects of the denial-of-service events.CCI-004866Employ organization-defined controls by type of denial-of-service to achieve the denial-of-service objective.CCI-004867Defines the controls by type of denial-of-service event by employing the controls to achieve the denial-of-service objective.CCI-002385Protect against or limit the effects of organization-defined types of denial-of-service events.

Linked STIG Checks (200)

Across 42 STIGs. Click to expand.