CM-07(07) Code Execution in Protected Environments
Allow execution of binary or machine-executable code only in confined physical or virtual machine environments and with the explicit approval of cm-07.07_odp when such code is:
(a) Obtained from sources with limited or no warranty; and/or
(b) Without the provision of source code.
Parameter ID | Definition |
---|---|
cm-07.07_odp | personnel or roles |
Baselines
- L
- M
- H
- P
Guidance
Code execution in protected environments applies to all sources of binary or machine-executable code, including commercial software and firmware and open-source software.
Related controls 2
- CM-10 Software Usage Restrictions L M H P
- SC-44 Detonation Chambers L M H P