FedRAMP Controls / SC
SC-7(7) Split Tunneling for Remote Devices
Family SC
Baselines moderate
Mapped KSIs 1
Control statement
Prevent split tunneling for remote devices connecting to organizational systems unless the split tunnel is securely provisioned using {{ insert: param, sc-07.07_odp }}. Parameter placeholders {{ insert: param, … }} reference FedRAMP-set values in the resolved profile. Full parameter map is
preserved in the catalog database.
Covered by these Key Security Indicators
| KSI | Title | Category |
|---|---|---|
| KSI-CNA-03 | Enforce Traffic Flow Use logical networking and related capabilities to enforce traffic flow controls. | Cloud Native Architecture |