NIST 800-53 REV 5 • SYSTEM AND COMMUNICATIONS PROTECTION

SC-15(2)Blocking Inbound and Outbound Communications Traffic

CMMC Practice Mapping

No direct CMMC mapping

NIST 800-171 Mapping

No direct NIST 800-171 mapping

Related Controls

No related controls listed

Practitioner Notes

Block collaborative computing devices from sending or receiving unauthorized traffic — preventing them from being used as covert communication channels.

Example 1: Place conference room video systems on a dedicated VLAN with strict firewall rules. They can only communicate with your approved video conferencing service (Teams, Zoom) and cannot reach the internet or internal servers for any other purpose.

Example 2: On endpoint workstations, use application control policies (AppLocker, WDAC) to restrict which applications can access the camera and microphone. Only approved conferencing apps (Teams, Zoom) are allowed — unknown applications cannot access these devices.