Navigation and service

CI-Guard

BSI-CI-RP-0016-2017-2019 | Version 1.0 | Date 09.12.2019

for the protection of data classified „GEHEIM“

A CI-Guard (CIG) is a product type used to establish a secure connection between two networks HIGH and LOW in the sense that defined rules must be followed with regard to the information flow from the network HIGH to the network LOW in order to prevent the undesired outflow of sensitive data from the network HIGH. (Sensitive data in the network HIGH is digital documents or machine-generated digital data of various kinds.) In this case, HIGH refers to the network in which the sensitive data is located. The CIG ensures that only those data is transferred from the network HIGH to the network LOW that may be passed on in compliance with a defined security policy. For this purpose, rules for information flow control are implemented in the CIG.

The CI requirements profile listed here is classified as "VS-NUR FÜR DEN DIENSTGEBRAUCH" and is therefore only available to parties that can prove a corresponding need-to-know in accordance with the General Administrative Provision for the Material Protection of Classified Information (VSA--Verschlusssachenanweisung). If you are interested in the document please contact: vs-anforderungsprofile@bsi.bund.de