Skip to main content

Management / Monitoring / Controls / DEV

Restrict access to Monitoring Dashboards

CCC.Monitor.CN04 · Access

Control access to Monitoring Dashboards and reports to ensure they don't highlight an attack path.

Related Capabilities

IDTitleDescription
CCC.Monitoring.CP04CCC.Monitoring.CP04

Related Threats

IDTitleDescription
CCC.Monitor.TH02Health Checks Used to Identify Attack TargetsHealth Checks are used to inform those responsible for maintaining a system that there is a problem, but if that information gets into the hands of a malicious actor, it can be used to target already problematic systems and mask malicious activity.

Assessment Requirements

IDTextApplicability
CCC.Monitor.CN04.AR01When monitoring dashboards display degraded services which may become potential targets then the dashboard MUST be protected from unauthorised access.tlp-clear, tlp-green, tlp-amber, tlp-red

Guideline Mappings

FrameworkIDRemarks
NIST-CSFDE.CM-09
NIST-CSFDE.AE-03
NIST_800_53SI-4
NIST_800_53AC-3