{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","kind":"record","record":{"attributes":{"category":"technical","domain":"Network & Communications Security","type":"preventive"},"canonicalUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-NET-12","description":"Prohibit remote activation of collaborative computing devices (cameras, microphones, shared whiteboards) except where explicitly authorized, and give people present an explicit indication of use. Physically or logically disable unneeded connection ports and input/output devices, and restrict on-board sensor capability and the use of sensor-collected data. Define, authorize, and enforce documented usage restrictions for components subject to them.","details":{"control_category":"technical","control_type":"preventive","domain":"Network & Communications Security","guidance":[],"members":[{"control_id":"SC-15","coverage":"full","framework":"nist-800-53","relationship":"superset_of"},{"control_id":"SC-41","coverage":"full","framework":"nist-800-53","relationship":"superset_of"},{"control_id":"SC-42","coverage":"full","framework":"nist-800-53","relationship":"superset_of"},{"control_id":"SC-43","coverage":"full","framework":"nist-800-53","relationship":"superset_of"}],"statement":"Prohibit remote activation of collaborative computing devices (cameras, microphones, shared whiteboards) except where explicitly authorized, and give people present an explicit indication of use. Physically or logically disable unneeded connection ports and input/output devices, and restrict on-board sensor capability and the use of sensor-collected data. Define, authorize, and enforce documented usage restrictions for components subject to them.","title":"Restrict communication-capable devices, ports, and sensors","unified_id":"UC-NET-12"},"id":"uc:UC-NET-12","mapUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-NET-12","sourceIds":["nist-800-53"],"sourceUrl":null,"title":"UC-NET-12 — Restrict communication-capable devices, ports, and sensors","type":"unified"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:002d111d2b8052d42389da2b65af0f9098a52e1ca7432dd6ddf2ba5f3acac42c","properties":{"rationale":"Disabling unneeded I/O ports/devices blocks removable-media exfiltration, and prohibiting remote camera/mic activation prevents espionage collection.","strength":"primary"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/risk-data-exfiltration-espionage-74803ebc.json","targetId":"risk:data-exfiltration-espionage","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:15fa910ee0664171c2932223ace42ac4c03df190b1bf64f0b3a8a5d344bcc115","properties":{},"sourceDetailPath":"/data/v1/records/wf-c9-75fb1752.json","sourceId":"wf:C9","targetDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","targetId":"uc:UC-NET-12","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:5ec9ca6c497c9581943d4992e801f31f27aa889f5ebc13efb300e8e14356066c","properties":{"control_id":"SC-43","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-sc-43-a4cd3866.json","targetId":"ctrl:nist-800-53:SC-43","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:72988c16802612434b7b82aeeed311c8c2eee55006f9aa85322d92b17a8b0b81","properties":{},"sourceDetailPath":"/data/v1/records/wf-c39-df8b318a.json","sourceId":"wf:C39","targetDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","targetId":"uc:UC-NET-12","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:aa86e7d29faf89c57028fb27ca5c6de72436d69e72286201ac57c0d2d1774d1e","properties":{"control_id":"SC-15","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-sc-15-ff70baf2.json","targetId":"ctrl:nist-800-53:SC-15","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:ade03946e6f49daa08fd6d1182e2af00bdb409c3e5aa43a0398e6c499e81b96d","properties":{"rationale":"Disabling unneeded I/O device ports removes the removable-media vector for malware delivery.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/risk-sdlc-malware-injection-compromise-ec5a8dc4.json","targetId":"risk:sdlc-malware-injection-compromise","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:d8232a5b87d700697d76bf74bafcc18034e9d9ef39cca5c58c354acdea93b520","properties":{"control_id":"SC-42","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-sc-42-79ad5f1e.json","targetId":"ctrl:nist-800-53:SC-42","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:e3b4713c11b4843a4c0c6d9494552460311c3f3897ba8461879374261860e6ec","properties":{"rationale":"Prohibiting remote activation of cameras/microphones and restricting sensor data denies an adversary a surveillance/collection channel.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/risk-cyber-reconnaissance-3a7a6c33.json","targetId":"risk:cyber-reconnaissance","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:f520fb4b32f2563c429151733202b0039b371235fce36594c1cea077bad5c483","properties":{"control_id":"SC-41","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-net-12-3fbb3db4.json","sourceId":"uc:UC-NET-12","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-sc-41-1c5c17c2.json","targetId":"ctrl:nist-800-53:SC-41","type":"maps_to"}],"schemaVersion":1}
