SC-2 - Separation of System and User Functionality

Separate user functionality, including user interface services, from system management functionality.


ID: SC-2
Enhancements:  1 | 2

Space Segment Guidance

Separating system and user functionality typically means isolating planning/science/IT from TT&C consoles and distinguishing on-board diagnostics/maintenance from flight-critical control. Consider preventing non-operational activities (web, email, analysis tools) from sharing hosts or trust boundaries with command paths; one-way or brokered transfers from TT&C to analysis environments; and mode-dependent restrictions that further narrow access during LEOP or contingencies.