NIST SP 800-123
Network Security

NIST SP 800-123 NISTSP123-6: Network Security and Server Communications

Apply Section 6.3 network security including: network segmentation per NIST SP 800-207 Zero Trust + microsegmentation + DMZ + jump servers + bastion hosts + perimeter firewalls + host-based firewalls + IDS/IPS + DDoS protection + DNS security (DNSSEC + DoH) + secure email (SPF + DKIM + DMARC + ARC + BIMI) + secure file transfer (SFTP + FTPS + SCP) + secure remote access (VPN + IPsec + SD-WAN + zero trust network access ZTNA) + network monitoring + traffic analysis + flow records (NetFlow + sFlow + IPFIX).

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.