Access Enforcement
Description
Enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.
Mapped SPARTA techniques
120 techniques
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates DE-0002.03 by enforcing access authorization on telemetry-publisher and packet-filter configuration.
AC-3 mitigates DE-0003 by enforcing access authorization on on-board-value modification interfaces.
AC-3 mitigates DE-0003.01 by enforcing access authorization on VCC reset/edit operations.
AC-3 mitigates DE-0003.03 by enforcing access authorization on receiver enable/disable controls.
AC-3 mitigates DE-0003.04 by enforcing access authorization on AGC and signal-strength parameter modifications.
AC-3 mitigates DE-0003.05 by enforcing access authorization on receiver lock-mode parameter modifications.
AC-3 mitigates DE-0003.06 by enforcing access authorization on telemetry-mode and rate parameters.
AC-3 mitigates DE-0003.07 by enforcing access authorization on cryptographic-mode selection.
AC-3 mitigates DE-0003.08 by enforcing access authorization on command-history records.
AC-3 mitigates DE-0003.09 by enforcing access authorization on clock-register modifications.
AC-3 mitigates DE-0003.10 by enforcing access authorization on ephemeris-update interfaces.
AC-3 mitigates DE-0003.11 by enforcing access authorization on watchdog-parameter modifications.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates DE-0005 by maintaining access authorization across safe-mode states.
AC-3 mitigates DE-0006 by enforcing access authorization on whitelist modification interfaces.
AC-3 mitigates DE-0007 by enforcing access authorization on privileged paths a rootkit must traverse to install.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates EX-0003 by enforcing authorization on access to authentication-handler code and config.
AC-3 mitigates EX-0005.02 by enforcing access authorization on hardware-level/maintenance commanding.
AC-3 mitigates EX-0006 by enforcing access authorization on cryptographic-configuration changes.
AC-3 mitigates EX-0010 by enforcing approved authorizations on code-execution surfaces.
AC-3 mitigates rootkit installation by enforcing access authorization on privileged paths.
AC-3 mitigates EX-0012 by enforcing access authorization on registers, parameter tables, and routing maps.
AC-3 mitigates EX-0012.01 by enforcing access authorization on internal-register writes.
AC-3 mitigates EX-0012.02 by enforcing access authorization on routing-table modifications.
AC-3 mitigates EX-0012.03 by enforcing access authorization on raw memory write/load services.
AC-3 mitigates EX-0012.04 by enforcing access authorization on subscriber-table modifications.
AC-3 mitigates EX-0012.05 by enforcing access authorization on scheduling-parameter modifications.
AC-3 mitigates EX-0012.06 by enforcing access authorization on payload data stores.
AC-3 mitigates EX-0012.07 by enforcing access authorization on propulsion-parameter modifications.
AC-3 mitigates EX-0012.08 by enforcing access authorization on ADCS parameter modifications.
AC-3 mitigates EX-0012.09 by enforcing access authorization on EPS parameter modifications.
AC-3 mitigates EX-0012.10 by enforcing access authorization on C&DH table modifications.
AC-3 mitigates EX-0012.11 by enforcing access authorization on watchdog-timer parameter modifications.
AC-3 mitigates EX-0012.12 by enforcing access authorization on clock-register modifications.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates EXF-0004 by enforcing access authorization on out-of-band-link configuration.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates IA-0004.02 by enforcing access authorization on commands routed via the secondary receiver.
AC-3 mitigates IA-0005 by enforcing access authorization on any commands attempted from a proximity vantage.
AC-3 mitigates IA-0005.02 by enforcing access controls on commands and data crossing the docked-vehicle interface.
AC-3 mitigates IA-0005.03 by enforcing access controls at any temporary umbilical or port that could be coupled during grappling.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates IA-0010 by ensuring access authorization remains enforced during safe-mode states.
AC-3 mitigates IA-0011 by enforcing access authorization on physical port connections.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates IMP-0006 by enforcing access authorization on data stores theft would target.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates LM-0004 by enforcing access authorization on commands and data crossing the visiting-vehicle interface.
AC-3 mitigates LM-0005 by enforcing access authorization on hypervisor and inter-partition interfaces.
AC-3 mitigates LM-0006 by enforcing access authorization on launch-vehicle umbilical and EGSE-network interactions.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
AC-3 mitigates PER-0004 by enforcing access authorization on key-management functions.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Mapped by SPARTA, not curated by SafeMode Space.
Cross-framework references
Relationships published by the source frameworks themselves, reproduced here with attribution. They are not SafeMode Space mappings and carry no confidence rating of ours.
Referenced by 3 in NIST Cybersecurity Framework 2.0
- PR.AA-05Access permissions, entitlements, and authorizations are defined in a policy, managed, enforced, and reviewed, and incorporate the principles of least privilege and separation of duties
- PR.DS-10The confidentiality, integrity, and availability of data-in-use are protected
- PR.IR-01Networks and environments are protected from unauthorized logical access and usage
Cite as SafeMode Space, nist-80053-rev5 AC-3.