SC-7(20) - Boundary Protection | Dynamic Isolation and Segregation

Provide the capability to dynamically isolate [Assignment: organization-defined system components] from other system components.


ID: SC-7(20)
Enhancement of : SC-7

Space Segment Guidance

Dynamic isolation and segregation become especially relevant when a hosted payload exhibits malicious behavior or experiences a severe fault. In such cases, the spacecraft may reconfigure network paths or memory mappings to quarantine the compromised module, thereby protecting critical bus operations and data flows. This might involve routing around an infected subsystem or employing backup communication channels. Autonomous detection routines can expedite this action, though a trusted ground operation center often confirms final decisions, given that false positives can disrupt legitimate mission activities. While dynamic isolation adds complexity, it dramatically enhances resilience in systems hosting multiple stakeholders, helping operators prevent a single malfunctioning module from compromising the entire platform.