NIST SP 800-171 & CMMC 2.0 Control 3.14.6 Requirement:

Monitor organizational systems, including inbound and outbound communications traffic, to detect attacks and indicators of potential attacks.

NIST SP 800-171 & CMMC 2.0 3.14.6 Requirement Explanation:

Intrusion detection systems are designed to identify common cyber attacks. Many modern firewall appliances come with built in intrusion detection capabilities. There are also open source solutions the most famous being Snort.

Example NIST SP 800-171 & CMMC 2.0 3.14.6 Implementation:

Place an intrusion detection system between your local network and the internet. Configure it to detect attacks and potential attacks.

NIST SP 800-171 & CMMC 2.0 3.14.6 Scenario(s):

- Scenario 1:

You want to monitor traffic coming in and out of your network for cyber attacks. To accomplish this you setup a Snort intrusion detection systems on a Linux server and route your network traffic so that Snort can monitor it.

