SC-16(2) - Transmission of Security and Privacy Attributes | Anti-spoofing Mechanisms

Implement anti-spoofing mechanisms to prevent adversaries from falsifying the security attributes indicating the successful application of the security process.


ID: SC-16(2)
Enhancement of : SC-16

Space Segment Guidance

Misbinding occurs when a valid tag is paired with the wrong data, such as a low-classification header on a high-classification file. Detect by double signing. The originating subsystem computes a hash over the header plus payload and stores it in the telemetry trailer. The receiving guard recomputes the hash and compares it. Any mismatch signals misbinding or corruption. Log the event and lock the channel until ground operators investigate, blocking replay attacks that splice benign headers onto stolen packets.