SC-7(18) - Boundary Protection | Fail Secure

Prevent systems from entering unsecure states in the event of an operational failure of a boundary protection device.


ID: SC-7(18)
Enhancement of : SC-7

Space Segment Guidance

Untrusted or lower-assurance connections (cross-support, research partners) merit additional isolation. Consider dedicated gateways that terminate protocols, perform translation, validate and sanitize inbound artifacts, and enforce directionality. On-board, isolate experimental payload networks from bus control paths, limit any configuration influence, and ensure TT&C injection is out of scope.