FedRAMP Controls / SC

SC-7(7) Split Tunneling for Remote Devices

Family SC
Baselines moderate
Mapped KSIs 1

Control statement

Prevent split tunneling for remote devices connecting to organizational systems unless the split tunnel is securely provisioned using {{ insert: param, sc-07.07_odp }}.

Parameter placeholders {{ insert: param, … }} reference FedRAMP-set values in the resolved profile. Full parameter map is preserved in the catalog database.

Covered by these Key Security Indicators

KSITitleCategory
KSI-CNA-03Enforce Traffic Flow
Use logical networking and related capabilities to enforce traffic flow controls.
Cloud Native Architecture