Skip to main content

Management / Monitoring / Controls / DEV

Rate Limiting on External Monitoring

CCC.Monitor.CN01 · Observability

Prevent DoS attacks using External Monitoring tools.

Related Capabilities

IDTitleDescription
CCC.Monitoring.CP06CCC.Monitoring.CP06

Related Threats

IDTitleDescription
CCC.Monitor.TH03External Monitoring DoSIf an external monitoring service is compromised, it can act as a host for instigating denial of service attacks on internal system which otherwise may not be protected against this form of attack.

Assessment Requirements

IDTextApplicability
CCC.Monitor.CN01.AR01When an External Monitoring system exceeds the anticipated rate of monitoring checks then Rate Limiting MUST be applied and an Audit Alert MUST be generated.tlp-clear, tlp-green, tlp-amber, tlp-red

Guideline Mappings

FrameworkIDRemarks
NIST-CSFPR.IR-01
NIST-CSFDE.CM-01
NIST_800_53SC-5
NIST_800_53SC-7