STIGQter STIGQter: STIG Summary: Traditional Security Checklist Version: 1 Release: 3 Benchmark Date: 15 Jun 2020:

Environmental IA Controls - Emergency Power Shut-Off (EPO)

DISA Rule

SV-41027r3_rule

Vulnerability Number

V-30983

Group Title

Environmental IA Controls - Emergency Power Shut-Off

Rule Version

EC-01.02.01

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. A master power switch or emergency cut-off switch for the IT equipment must be located inside the IT area near the main entrance.

2. The emergency switch must be properly labeled.

3. The emergency switch must be protected by a cover to prevent accidental shut-off of the power.

Check Contents

Check an emergency power cut-off (EPO) switch is located inside the IT room or area near the main entrance/exit. It must be clearly labeled and have a protective cover. This requirement is only for computer centers with large server rooms and/or supporting infrastructure rooms hosting large amounts of network equipment and/or equipment such as chillers, battery backup, transformers, etc.

NOTES: In general such an area will be in raised floor space. The requirement should not be applied to purely administrative/office space. Also, this requirement should not be applied to a tactical environment, unless it is clearly an "established" fixed computer facility supporting missions in a Theater of Operations. The standards to be applied to determine applicability in a tactical environment are:
1) The facility containing the computer room has been in operation over 1-year.
2) The facility is "fixed facility" - a hard building made from normal construction materials - wood, steel, brick, stone, mortar, etc.

Vulnerability Number

V-30983

Documentable

False

Rule Version

EC-01.02.01

Severity Override Guidance

Check an emergency power cut-off (EPO) switch is located inside the IT room or area near the main entrance/exit. It must be clearly labeled and have a protective cover. This requirement is only for computer centers with large server rooms and/or supporting infrastructure rooms hosting large amounts of network equipment and/or equipment such as chillers, battery backup, transformers, etc.

NOTES: In general such an area will be in raised floor space. The requirement should not be applied to purely administrative/office space. Also, this requirement should not be applied to a tactical environment, unless it is clearly an "established" fixed computer facility supporting missions in a Theater of Operations. The standards to be applied to determine applicability in a tactical environment are:
1) The facility containing the computer room has been in operation over 1-year.
2) The facility is "fixed facility" - a hard building made from normal construction materials - wood, steel, brick, stone, mortar, etc.

Check Content Reference

M

Target Key

2506

Comments