NIST SP 800-171A - Assessing Security Requirements for Controlled Unclassified Information (CUI)
171A 03.04 Configuration Management

NIST SP 800-171A - Assessing Security Requirements for Controlled Unclassified Information (CUI) 171A-03.04.06: Least Functionality

Determines whether systems are configured to provide only essential capability, and whether non-essential functions, ports, protocols and services are disabled or restricted.

Other controls in 171A 03.04 Configuration Management

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.