![]() Supplemental Guidance: Organizations use the registration process to manage, track, and provide oversight for information systems and implemented functions, ports, protocols, and services. Ensure there is a POA&M if you are not compliant with PPSM.įor the RMF process the primary PPSM security control is CM-7 LEAST FUNCTIONALITY (3) REGISTRATION COMPLIANCE: The organization ensures compliance with. We find that Components are marking PPSM compliant in the DIACAP package, but when we check the Registry, CAL, or VA report we realize that they are not compliant. ![]() ![]() If the implementation of the PPS is not compliant with the Category Assurance List (CAL) and Vulnerability Assessment (VA) report, it must be marked non-compliant on your DIACAP scorecard. Under DIACAP the IA Security Control for PPSM is DCPP-1. Please be certain that you have completely filled out your certification and accreditation (C&A) package if using the Defense Information Assurance Certification and Accreditation Process (DIACAP) or your Security Assessment Report (SAR) Assessment and Authorization (A&A) information if using the new DoD Risk Management Framework (RMF) process in accordance with DoDI 8501.01 dated 12 March 2014. Click Here to see the document.Īnswer: Your use of ports, protocols, and data services (PPS) must: Be documented in your Certification & Accreditation package (DCPP-1) and registered for Risk Management Framework (RMF). The new DoD 8551.01 has been released on May 28, 2014. Question: Is it a requirement to register in the PPSM Registry?Īnswer: Yes, it has been a requirement to register protocols in the Internet protocol suite, and associated ports (also known as “protocols, data services, and associated ports” or “ports, protocols, and services” or “PPS”) since the 2004 release of the first DoDI 8551. ![]() This page contains frequently asked questions on Ports, Protocols, and Services Management (PPSM). If you would like to attend a live session please visit the training page for more information. These FAQs come directly from the most common mission partner inquiries recieved, and from the live Enterprise Connection Division subject matter expert hosted Question and Answer sessions that are available regularly as part of the Mission Partner Training Program. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |