NIST 800-53 REV 5 • SYSTEM AND COMMUNICATIONS PROTECTION
SC-15(2) — Blocking Inbound and Outbound Communications Traffic
CMMC Practice Mapping
No direct CMMC mapping
NIST 800-171 Mapping
No direct NIST 800-171 mapping
Related Controls
No related controls listed
Practitioner Notes
Block collaborative computing devices from sending or receiving unauthorized traffic — preventing them from being used as covert communication channels.
Example 1: Place conference room video systems on a dedicated VLAN with strict firewall rules. They can only communicate with your approved video conferencing service (Teams, Zoom) and cannot reach the internet or internal servers for any other purpose.
Example 2: On endpoint workstations, use application control policies (AppLocker, WDAC) to restrict which applications can access the camera and microphone. Only approved conferencing apps (Teams, Zoom) are allowed — unknown applications cannot access these devices.