4.2: Establish and Maintain a Secure Configuration Process for Network Infrastructure
CSF v1.1 References:
PF v1.0 References:
Threats Addressed:
Incorporates the following controls from the previous version: 11.1: Maintain Standard Security Configurations for Network Devices, 11.3: Use Automated Tools to Verify Standard Device Configurations and Detect Changes.
Control Statement
Establish and maintain a secure configuration process for network devices. Review and update documentation annually, or when significant enterprise changes occur that could impact this Safeguard.
[csf.tools Note: For more information on the Critical Security Controls, visit the Center for Internet Security.]