An ISCM capability that addresses the following network and physical boundary areas:
Physical Boundaries – Ensure that movement (of people, media, equipment, etc.) into and out of the physical facility does not compromise security.
Filters – Ensure that traffic into and out of the network (and thus out of the physical facility protection) does not compromise security. Do the same for enclaves that subdivide the network.
Other – Ensure that information is protected (with adequate strength) when needed to protect confidentiality and integrity, whether that information is in transit or at rest.
Sources:
NISTIR 8011 Vol. 1
under Capability, Boundary Management
See Capability, Boundary Management.
Sources:
NISTIR 8011 Vol. 1