unified
UC-NET-02 — Authorize and secure remote, wireless, and mobile access
Establish usage restrictions, configuration and connection requirements, and explicit authorization for each type of remote access, wireless access, and organization-controlled mobile device before connection is permitted. Protect these connections with mutual authentication, encryption, and wireless link-level protections commensurate with the signal exposure and threat environment, and monitor for unauthorized access points and connections.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Network & Communications Security
- type
- preventive
- category
- technical
Details
- unified_id
- UC-NET-02
- title
- Authorize and secure remote, wireless, and mobile access
- statement
- Establish usage restrictions, configuration and connection requirements, and explicit authorization for each type of remote access, wireless access, and organization-controlled mobile device before connection is permitted. Protect these connections with mutual authentication, encryption, and wireless link-level protections commensurate with the signal exposure and threat environment, and monitor for unauthorized access points and connections.
- domain
- Network & Communications Security
- control_type
- preventive
- control_category
- technical
- members
- framework
- nist-800-53
- control_id
- AC-17
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- AC-18
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- AC-19
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- SC-40
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access maps_to AC-19 — Access Control for Mobile Devices
- framework
- nist-800-53
- control_id
- AC-19
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Technical Security Testing & Pentest Engagement tests UC-NET-02 — Authorize and secure remote, wireless, and mobile access
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access maps_to SC-40 — Wireless Link Protection
- framework
- nist-800-53
- control_id
- SC-40
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access mitigates Weak authentication and password management
- strength
- related
- rationale
- Requiring mutual authentication before a remote connection is permitted reduces account compromise on those channels; MFA/password policy owned elsewhere.
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access mitigates Weak or absent encryption and key management
- strength
- related
- rationale
- Mandating encryption for remote/wireless/mobile transmission reduces unencrypted-in-transit exposure; storage and key management addressed elsewhere.
- Secure Connectivity & Network Trust Services Operation operates UC-NET-02 — Authorize and secure remote, wireless, and mobile access
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access maps_to AC-18 — Wireless Access
- framework
- nist-800-53
- control_id
- AC-18
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Security Control Assessment & POA&M Remediation tests UC-NET-02 — Authorize and secure remote, wireless, and mobile access
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access mitigates Remote-work, mobile and split-tunneling exposure
- strength
- primary
- rationale
- Explicit authorization, usage/connection restrictions, and encryption for each remote/wireless/mobile connection is the operative control for insecure remote and mobile access.
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access mitigates Communications interception, eavesdropping and man-in-the-middle
- strength
- primary
- rationale
- Encryption, wireless link-level protection, and mutual authentication defeat eavesdropping, wireless interception, and man-in-the-middle on these links.
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access maps_to AC-17 — Remote Access
- framework
- nist-800-53
- control_id
- AC-17
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-NET-02 — Authorize and secure remote, wireless, and mobile access mitigates Credentials and sensitive data transmitted in clear text
- strength
- primary
- rationale
- Mandatory mutual authentication and encryption on remote/wireless links prevent credential interception and spoofing on those channels.