SI-4(10) - System Monitoring | Visibility of Encrypted Communications

Make provisions so that [Assignment: organization-defined encrypted communications traffic] is visible to [Assignment: organization-defined system monitoring tools and mechanisms].


ID: SI-4(10)
Enhancement of : SI-4

Space Segment Guidance

Where encryption limits inspection, retain useful visibility without weakening confidentiality. Consider surfacing metadata (station ID, mode, counters, sequence space), verifying MAC/signature outcomes, and placing monitoring points just before/after crypto boundaries in TT&C chains and relays. Distinguish “corruption” from “authentication/authorization failure” in operator feedback to speed diagnosis.