<?xml version="1.0" encoding="UTF-8"?>
<Benchmark id="FDCC-Vista-Firewall" resolved="0" xml:lang="en"
      xmlns="http://checklists.nist.gov/xccdf/1.1"
      xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
      xmlns:cdf="http://checklists.nist.gov/xccdf/1.1"
      xmlns:cpe="http://cpe.mitre.org/dictionary/2.0"
      xmlns:dc="http://purl.org/dc/elements/1.1/"
      xmlns:xhtml="http://www.w3.org/1999/xhtml"
      xmlns:dsig="http://www.w3.org/2000/09/xmldsig#"
      xsi:schemaLocation="http://checklists.nist.gov/xccdf/1.1 http://nvd.nist.gov/schema/xccdf-1.1.4.xsd
      http://cpe.mitre.org/dictionary/2.0 http://cpe.mitre.org/files/cpe-dictionary_2.1.xsd">
      <status date="2009-03-26">accepted</status>
      <title>FDCC: Guidance for Securing Microsoft Windows Vista Firewall for IT Professional</title>
      <description>This guide has been created to assist IT professionals, in effectively securing systems with Microsoft Vista Firewall</description>
      <notice id="terms-of-use" xml:lang="en">Do not attempt to implement any of the settings in this guide without first testing them in a non-operational environment. NIST assumes no responsibility whatsoever for its use by other parties, and makes no guarantees, expressed or implied, about its quality, reliability, or any other characteristic. NIST would appreciate acknowledgement if the document and template are used.</notice>
      <front-matter xml:lang="en">todo - add text</front-matter>
      <rear-matter xml:lang="en"><xhtml:strong>Trademark Information</xhtml:strong><xhtml:br/><xhtml:br/>Microsoft, Windows, Windows XP, Windows Vista, Internet Explorer, and Windows Firewall are either registered trademarks or trademarks of Microsoft Corporation in the United States and other countries.<xhtml:br/><xhtml:br/>All other names are registered trademarks or trademarks of their respective companies.</rear-matter>
      <reference href="http://nvd.nist.gov/chklst_detail.cfm?config_id=76">
            <dc:publisher>National Institute of Standards and Technology</dc:publisher>
            <dc:identifier>SP 800-68</dc:identifier>
      </reference>
      <platform idref="cpe:/o:microsoft:windows_vista"/>
      <version>v1.2.1.0</version>
      <model system="urn:xccdf:scoring:default"/>
      <model system="urn:xccdf:scoring:flat"/>
      <!-- ==================================================================================================== -->
      <!-- ======================================  NIST 800-53 PROFILES  ====================================== -->
      <!-- ==================================================================================================== -->
      <!--                                                                                                      -->
      <!-- The following profiles are used to turn on specific controls as definied in 800-53.  These controls  -->
      <!-- help determine the specific rules that will be evaluated as certain rules found in this document     -->
      <!-- require specific controls to be enabled.  This enable FISMA compliance to be achived by combining    -->
      <!-- guidance defined with high level recommendations made in 800-53.                                     -->
      <!--                                                                                                      -->
      <Profile id="low_800_53" abstract="true">
            <title>800-53 Low</title>
            <description>This profile selects specific controls that are recommended by Special Publication 800-53 for information systems in which all three security objectives (i.e., confidentiality, integrity, and availability) are assigned a FIPS 199 potential impact value of low. Each control has an effect on other groups within this document as individual rule require certain controls to be selected.</description>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AC-1" selected="true"/>
            <select idref="AC-2" selected="true"/>
            <select idref="AC-3" selected="true"/>
            <select idref="AC-4" selected="0"/>
            <select idref="AC-5" selected="0"/>
            <select idref="AC-6" selected="0"/>
            <select idref="AC-7" selected="true"/>
            <select idref="AC-8" selected="true"/>
            <select idref="AC-9" selected="0"/>
            <select idref="AC-10" selected="0"/>
            <select idref="AC-11" selected="0"/>
            <select idref="AC-12" selected="0"/>
            <select idref="AC-13" selected="true"/>
            <select idref="AC-14" selected="true"/>
            <select idref="AC-15" selected="0"/>
            <select idref="AC-16" selected="0"/>
            <select idref="AC-17" selected="true"/>
            <select idref="AC-18" selected="0"/>
            <select idref="AC-19" selected="0"/>
            <select idref="AC-20" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AT  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AT-1" selected="true"/>
            <select idref="AT-2" selected="true"/>
            <select idref="AT-3" selected="true"/>
            <select idref="AT-4" selected="true"/>
            <select idref="AT-5" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AU  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AU-1" selected="true"/>
            <select idref="AU-2" selected="true"/>
            <select idref="AU-3" selected="true"/>
            <select idref="AU-4" selected="true"/>
            <select idref="AU-5" selected="true"/>
            <select idref="AU-6" selected="0"/>
            <select idref="AU-7" selected="0"/>
            <select idref="AU-8" selected="0"/>
            <select idref="AU-9" selected="true"/>
            <select idref="AU-10" selected="0"/>
            <select idref="AU-11" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CA-1" selected="true"/>
            <select idref="CA-2" selected="0"/>
            <select idref="CA-3" selected="true"/>
            <select idref="CA-4" selected="true"/>
            <select idref="CA-5" selected="true"/>
            <select idref="CA-6" selected="true"/>
            <select idref="CA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CM  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CM-1" selected="true"/>
            <select idref="CM-2" selected="true"/>
            <select idref="CM-3" selected="0"/>
            <select idref="CM-4" selected="0"/>
            <select idref="CM-5" selected="0"/>
            <select idref="CM-6" selected="true"/>
            <select idref="CM-7" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CP-1" selected="true"/>
            <select idref="CP-2" selected="true"/>
            <select idref="CP-3" selected="0"/>
            <select idref="CP-4" selected="0"/>
            <select idref="CP-5" selected="true"/>
            <select idref="CP-6" selected="0"/>
            <select idref="CP-7" selected="0"/>
            <select idref="CP-8" selected="0"/>
            <select idref="CP-9" selected="true"/>
            <select idref="CP-10" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IA-1" selected="true"/>
            <select idref="IA-2" selected="true"/>
            <select idref="IA-3" selected="0"/>
            <select idref="IA-4" selected="true"/>
            <select idref="IA-5" selected="true"/>
            <select idref="IA-6" selected="true"/>
            <select idref="IA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IR  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IR-1" selected="true"/>
            <select idref="IR-2" selected="0"/>
            <select idref="IR-3" selected="0"/>
            <select idref="IR-4" selected="true"/>
            <select idref="IR-5" selected="0"/>
            <select idref="IR-6" selected="true"/>
            <select idref="IR-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MA-1" selected="true"/>
            <select idref="MA-2" selected="true"/>
            <select idref="MA-3" selected="0"/>
            <select idref="MA-4" selected="true"/>
            <select idref="MA-5" selected="true"/>
            <select idref="MA-6" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MP-1" selected="true"/>
            <select idref="MP-2" selected="true"/>
            <select idref="MP-3" selected="0"/>
            <select idref="MP-4" selected="0"/>
            <select idref="MP-5" selected="0"/>
            <select idref="MP-6" selected="0"/>
            <select idref="MP-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PE  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PE-1" selected="true"/>
            <select idref="PE-2" selected="true"/>
            <select idref="PE-3" selected="true"/>
            <select idref="PE-4" selected="0"/>
            <select idref="PE-5" selected="0"/>
            <select idref="PE-6" selected="true"/>
            <select idref="PE-7" selected="true"/>
            <select idref="PE-8" selected="true"/>
            <select idref="PE-9" selected="0"/>
            <select idref="PE-10" selected="0"/>
            <select idref="PE-11" selected="0"/>
            <select idref="PE-12" selected="true"/>
            <select idref="PE-13" selected="true"/>
            <select idref="PE-14" selected="true"/>
            <select idref="PE-15" selected="true"/>
            <select idref="PE-16" selected="true"/>
            <select idref="PE-17" selected="0"/>
            <select idref="PE-18" selected="0"/>
            <select idref="PE-19" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PL  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PL-1" selected="true"/>
            <select idref="PL-2" selected="true"/>
            <select idref="PL-3" selected="true"/>
            <select idref="PL-4" selected="true"/>
            <select idref="PL-5" selected="true"/>
            <select idref="PL-6" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PS  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PS-1" selected="true"/>
            <select idref="PS-2" selected="true"/>
            <select idref="PS-3" selected="true"/>
            <select idref="PS-4" selected="true"/>
            <select idref="PS-5" selected="true"/>
            <select idref="PS-6" selected="true"/>
            <select idref="PS-7" selected="true"/>
            <select idref="PS-8" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  RA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="RA-1" selected="true"/>
            <select idref="RA-2" selected="true"/>
            <select idref="RA-3" selected="true"/>
            <select idref="RA-4" selected="true"/>
            <select idref="RA-5" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SA-1" selected="true"/>
            <select idref="SA-2" selected="true"/>
            <select idref="SA-3" selected="true"/>
            <select idref="SA-4" selected="true"/>
            <select idref="SA-5" selected="true"/>
            <select idref="SA-6" selected="true"/>
            <select idref="SA-7" selected="true"/>
            <select idref="SA-8" selected="0"/>
            <select idref="SA-9" selected="true"/>
            <select idref="SA-10" selected="0"/>
            <select idref="SA-11" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SC-1" selected="true"/>
            <select idref="SC-2" selected="0"/>
            <select idref="SC-3" selected="0"/>
            <select idref="SC-4" selected="0"/>
            <select idref="SC-5" selected="true"/>
            <select idref="SC-6" selected="0"/>
            <select idref="SC-7" selected="true"/>
            <select idref="SC-8" selected="0"/>
            <select idref="SC-9" selected="0"/>
            <select idref="SC-10" selected="0"/>
            <select idref="SC-11" selected="0"/>
            <select idref="SC-12" selected="0"/>
            <select idref="SC-13" selected="true"/>
            <select idref="SC-14" selected="true"/>
            <select idref="SC-15" selected="0"/>
            <select idref="SC-16" selected="0"/>
            <select idref="SC-17" selected="0"/>
            <select idref="SC-18" selected="0"/>
            <select idref="SC-19" selected="0"/>
            <select idref="SC-20" selected="0"/>
            <select idref="SC-21" selected="0"/>
            <select idref="SC-22" selected="0"/>
            <select idref="SC-23" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SI  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SI-1" selected="true"/>
            <select idref="SI-2" selected="true"/>
            <select idref="SI-3" selected="true"/>
            <select idref="SI-4" selected="0"/>
            <select idref="SI-5" selected="true"/>
            <select idref="SI-6" selected="0"/>
            <select idref="SI-7" selected="0"/>
            <select idref="SI-8" selected="0"/>
            <select idref="SI-9" selected="0"/>
            <select idref="SI-10" selected="0"/>
            <select idref="SI-11" selected="0"/>
            <select idref="SI-12" selected="0"/>
      </Profile>
      <Profile id="moderate_800_53" abstract="true">
            <title>800-53 Moderate</title>
            <description>This profile selects specific controls that are recommended by Special Publication 800-53 for information systems in which at least one security objectives (i.e., confidentiality, integrity, and availability) are assigned a FIPS 199 potential impact value of moderate and no security objective is assigned a FIPS 199 potential impact value of high. Each control has an effect on other groups within this document as individual rule require certain controls to be selected.</description>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AC-1" selected="true"/>
            <select idref="AC-2" selected="true"/>
            <select idref="AC-3" selected="true"/>
            <select idref="AC-4" selected="true"/>
            <select idref="AC-5" selected="true"/>
            <select idref="AC-6" selected="true"/>
            <select idref="AC-7" selected="true"/>
            <select idref="AC-8" selected="true"/>
            <select idref="AC-9" selected="0"/>
            <select idref="AC-10" selected="0"/>
            <select idref="AC-11" selected="true"/>
            <select idref="AC-12" selected="true"/>
            <select idref="AC-13" selected="true"/>
            <select idref="AC-14" selected="true"/>
            <select idref="AC-15" selected="0"/>
            <select idref="AC-16" selected="0"/>
            <select idref="AC-17" selected="true"/>
            <select idref="AC-18" selected="true"/>
            <select idref="AC-19" selected="true"/>
            <select idref="AC-20" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AT  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AT-1" selected="true"/>
            <select idref="AT-2" selected="true"/>
            <select idref="AT-3" selected="true"/>
            <select idref="AT-4" selected="true"/>
            <select idref="AT-5" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AU  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AU-1" selected="true"/>
            <select idref="AU-2" selected="true"/>
            <select idref="AU-3" selected="true"/>
            <select idref="AU-4" selected="true"/>
            <select idref="AU-5" selected="true"/>
            <select idref="AU-6" selected="true"/>
            <select idref="AU-7" selected="true"/>
            <select idref="AU-8" selected="true"/>
            <select idref="AU-9" selected="true"/>
            <select idref="AU-10" selected="0"/>
            <select idref="AU-11" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CA-1" selected="true"/>
            <select idref="CA-2" selected="true"/>
            <select idref="CA-3" selected="true"/>
            <select idref="CA-4" selected="true"/>
            <select idref="CA-5" selected="true"/>
            <select idref="CA-6" selected="true"/>
            <select idref="CA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CM  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CM-1" selected="true"/>
            <select idref="CM-2" selected="true"/>
            <select idref="CM-3" selected="true"/>
            <select idref="CM-4" selected="true"/>
            <select idref="CM-5" selected="true"/>
            <select idref="CM-6" selected="true"/>
            <select idref="CM-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CP-1" selected="true"/>
            <select idref="CP-2" selected="true"/>
            <select idref="CP-3" selected="true"/>
            <select idref="CP-4" selected="true"/>
            <select idref="CP-5" selected="true"/>
            <select idref="CP-6" selected="true"/>
            <select idref="CP-7" selected="true"/>
            <select idref="CP-8" selected="true"/>
            <select idref="CP-9" selected="true"/>
            <select idref="CP-10" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IA-1" selected="true"/>
            <select idref="IA-2" selected="true"/>
            <select idref="IA-3" selected="true"/>
            <select idref="IA-4" selected="true"/>
            <select idref="IA-5" selected="true"/>
            <select idref="IA-6" selected="true"/>
            <select idref="IA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IR  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IR-1" selected="true"/>
            <select idref="IR-2" selected="true"/>
            <select idref="IR-3" selected="true"/>
            <select idref="IR-4" selected="true"/>
            <select idref="IR-5" selected="true"/>
            <select idref="IR-6" selected="true"/>
            <select idref="IR-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MA-1" selected="true"/>
            <select idref="MA-2" selected="true"/>
            <select idref="MA-3" selected="true"/>
            <select idref="MA-4" selected="true"/>
            <select idref="MA-5" selected="true"/>
            <select idref="MA-6" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MP-1" selected="true"/>
            <select idref="MP-2" selected="true"/>
            <select idref="MP-3" selected="true"/>
            <select idref="MP-4" selected="true"/>
            <select idref="MP-5" selected="true"/>
            <select idref="MP-6" selected="true"/>
            <select idref="MP-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PE  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PE-1" selected="true"/>
            <select idref="PE-2" selected="true"/>
            <select idref="PE-3" selected="true"/>
            <select idref="PE-4" selected="0"/>
            <select idref="PE-5" selected="true"/>
            <select idref="PE-6" selected="true"/>
            <select idref="PE-7" selected="true"/>
            <select idref="PE-8" selected="true"/>
            <select idref="PE-9" selected="true"/>
            <select idref="PE-10" selected="true"/>
            <select idref="PE-11" selected="true"/>
            <select idref="PE-12" selected="true"/>
            <select idref="PE-13" selected="true"/>
            <select idref="PE-14" selected="true"/>
            <select idref="PE-15" selected="true"/>
            <select idref="PE-16" selected="true"/>
            <select idref="PE-17" selected="true"/>
            <select idref="PE-18" selected="true"/>
            <select idref="PE-19" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PL  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PL-1" selected="true"/>
            <select idref="PL-2" selected="true"/>
            <select idref="PL-3" selected="true"/>
            <select idref="PL-4" selected="true"/>
            <select idref="PL-5" selected="true"/>
            <select idref="PL-6" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PS  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PS-1" selected="true"/>
            <select idref="PS-2" selected="true"/>
            <select idref="PS-3" selected="true"/>
            <select idref="PS-4" selected="true"/>
            <select idref="PS-5" selected="true"/>
            <select idref="PS-6" selected="true"/>
            <select idref="PS-7" selected="true"/>
            <select idref="PS-8" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  RA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="RA-1" selected="true"/>
            <select idref="RA-2" selected="true"/>
            <select idref="RA-3" selected="true"/>
            <select idref="RA-4" selected="true"/>
            <select idref="RA-5" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SA-1" selected="true"/>
            <select idref="SA-2" selected="true"/>
            <select idref="SA-3" selected="true"/>
            <select idref="SA-4" selected="true"/>
            <select idref="SA-5" selected="true"/>
            <select idref="SA-6" selected="true"/>
            <select idref="SA-7" selected="true"/>
            <select idref="SA-8" selected="0"/>
            <select idref="SA-9" selected="true"/>
            <select idref="SA-10" selected="0"/>
            <select idref="SA-11" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SC-1" selected="true"/>
            <select idref="SC-2" selected="true"/>
            <select idref="SC-3" selected="0"/>
            <select idref="SC-4" selected="true"/>
            <select idref="SC-5" selected="true"/>
            <select idref="SC-6" selected="true"/>
            <select idref="SC-7" selected="true"/>
            <select idref="SC-8" selected="true"/>
            <select idref="SC-9" selected="true"/>
            <select idref="SC-10" selected="true"/>
            <select idref="SC-11" selected="0"/>
            <select idref="SC-12" selected="true"/>
            <select idref="SC-13" selected="true"/>
            <select idref="SC-14" selected="true"/>
            <select idref="SC-15" selected="true"/>
            <select idref="SC-16" selected="0"/>
            <select idref="SC-17" selected="true"/>
            <select idref="SC-18" selected="true"/>
            <select idref="SC-19" selected="true"/>
            <select idref="SC-20" selected="true"/>
            <select idref="SC-21" selected="0"/>
            <select idref="SC-22" selected="true"/>
            <select idref="SC-23" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SI  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SI-1" selected="true"/>
            <select idref="SI-2" selected="true"/>
            <select idref="SI-3" selected="true"/>
            <select idref="SI-4" selected="true"/>
            <select idref="SI-5" selected="true"/>
            <select idref="SI-6" selected="true"/>
            <select idref="SI-7" selected="0"/>
            <select idref="SI-8" selected="true"/>
            <select idref="SI-9" selected="true"/>
            <select idref="SI-10" selected="true"/>
            <select idref="SI-11" selected="true"/>
            <select idref="SI-12" selected="true"/>
      </Profile>
      <Profile id="high_800_53" abstract="true">
            <title>800-53 High</title>
            <description>This profile selects specific controls that are recommended by Special Publication 800-53 for information systems in which at least one security objectives (i.e., confidentiality, integrity, and availability) are assigned a FIPS 199 potential impact value of high. Each control has an effect on other groups within this document as individual rule require certain controls to be selected.</description>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AC-1" selected="true"/>
            <select idref="AC-2" selected="true"/>
            <select idref="AC-3" selected="true"/>
            <select idref="AC-4" selected="true"/>
            <select idref="AC-5" selected="true"/>
            <select idref="AC-6" selected="true"/>
            <select idref="AC-7" selected="true"/>
            <select idref="AC-8" selected="true"/>
            <select idref="AC-9" selected="0"/>
            <select idref="AC-10" selected="true"/>
            <select idref="AC-11" selected="true"/>
            <select idref="AC-12" selected="true"/>
            <select idref="AC-13" selected="true"/>
            <select idref="AC-14" selected="true"/>
            <select idref="AC-15" selected="true"/>
            <select idref="AC-16" selected="0"/>
            <select idref="AC-17" selected="true"/>
            <select idref="AC-18" selected="true"/>
            <select idref="AC-19" selected="true"/>
            <select idref="AC-20" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AT  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AT-1" selected="true"/>
            <select idref="AT-2" selected="true"/>
            <select idref="AT-3" selected="true"/>
            <select idref="AT-4" selected="true"/>
            <select idref="AT-5" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AU  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AU-1" selected="true"/>
            <select idref="AU-2" selected="true"/>
            <select idref="AU-3" selected="true"/>
            <select idref="AU-4" selected="true"/>
            <select idref="AU-5" selected="true"/>
            <select idref="AU-6" selected="true"/>
            <select idref="AU-7" selected="true"/>
            <select idref="AU-8" selected="true"/>
            <select idref="AU-9" selected="true"/>
            <select idref="AU-10" selected="0"/>
            <select idref="AU-11" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CA-1" selected="true"/>
            <select idref="CA-2" selected="true"/>
            <select idref="CA-3" selected="true"/>
            <select idref="CA-4" selected="true"/>
            <select idref="CA-5" selected="true"/>
            <select idref="CA-6" selected="true"/>
            <select idref="CA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CM  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CM-1" selected="true"/>
            <select idref="CM-2" selected="true"/>
            <select idref="CM-3" selected="true"/>
            <select idref="CM-4" selected="true"/>
            <select idref="CM-5" selected="true"/>
            <select idref="CM-6" selected="true"/>
            <select idref="CM-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CP-1" selected="true"/>
            <select idref="CP-2" selected="true"/>
            <select idref="CP-3" selected="true"/>
            <select idref="CP-4" selected="true"/>
            <select idref="CP-5" selected="true"/>
            <select idref="CP-6" selected="true"/>
            <select idref="CP-7" selected="true"/>
            <select idref="CP-8" selected="true"/>
            <select idref="CP-9" selected="true"/>
            <select idref="CP-10" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IA-1" selected="true"/>
            <select idref="IA-2" selected="true"/>
            <select idref="IA-3" selected="true"/>
            <select idref="IA-4" selected="true"/>
            <select idref="IA-5" selected="true"/>
            <select idref="IA-6" selected="true"/>
            <select idref="IA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IR  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IR-1" selected="true"/>
            <select idref="IR-2" selected="true"/>
            <select idref="IR-3" selected="true"/>
            <select idref="IR-4" selected="true"/>
            <select idref="IR-5" selected="true"/>
            <select idref="IR-6" selected="true"/>
            <select idref="IR-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MA-1" selected="true"/>
            <select idref="MA-2" selected="true"/>
            <select idref="MA-3" selected="true"/>
            <select idref="MA-4" selected="true"/>
            <select idref="MA-5" selected="true"/>
            <select idref="MA-6" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MP-1" selected="true"/>
            <select idref="MP-2" selected="true"/>
            <select idref="MP-3" selected="true"/>
            <select idref="MP-4" selected="true"/>
            <select idref="MP-5" selected="true"/>
            <select idref="MP-6" selected="true"/>
            <select idref="MP-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PE  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PE-1" selected="true"/>
            <select idref="PE-2" selected="true"/>
            <select idref="PE-3" selected="true"/>
            <select idref="PE-4" selected="0"/>
            <select idref="PE-5" selected="true"/>
            <select idref="PE-6" selected="true"/>
            <select idref="PE-7" selected="true"/>
            <select idref="PE-8" selected="true"/>
            <select idref="PE-9" selected="true"/>
            <select idref="PE-10" selected="true"/>
            <select idref="PE-11" selected="true"/>
            <select idref="PE-12" selected="true"/>
            <select idref="PE-13" selected="true"/>
            <select idref="PE-14" selected="true"/>
            <select idref="PE-15" selected="true"/>
            <select idref="PE-16" selected="true"/>
            <select idref="PE-17" selected="true"/>
            <select idref="PE-18" selected="true"/>
            <select idref="PE-19" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PL  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PL-1" selected="true"/>
            <select idref="PL-2" selected="true"/>
            <select idref="PL-3" selected="true"/>
            <select idref="PL-4" selected="true"/>
            <select idref="PL-5" selected="true"/>
            <select idref="PL-6" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PS  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PS-1" selected="true"/>
            <select idref="PS-2" selected="true"/>
            <select idref="PS-3" selected="true"/>
            <select idref="PS-4" selected="true"/>
            <select idref="PS-5" selected="true"/>
            <select idref="PS-6" selected="true"/>
            <select idref="PS-7" selected="true"/>
            <select idref="PS-8" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  RA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="RA-1" selected="true"/>
            <select idref="RA-2" selected="true"/>
            <select idref="RA-3" selected="true"/>
            <select idref="RA-4" selected="true"/>
            <select idref="RA-5" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SA-1" selected="true"/>
            <select idref="SA-2" selected="true"/>
            <select idref="SA-3" selected="true"/>
            <select idref="SA-4" selected="true"/>
            <select idref="SA-5" selected="true"/>
            <select idref="SA-6" selected="true"/>
            <select idref="SA-7" selected="true"/>
            <select idref="SA-8" selected="0"/>
            <select idref="SA-9" selected="true"/>
            <select idref="SA-10" selected="0"/>
            <select idref="SA-11" selected="0"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SC-1" selected="true"/>
            <select idref="SC-2" selected="true"/>
            <select idref="SC-3" selected="true"/>
            <select idref="SC-4" selected="true"/>
            <select idref="SC-5" selected="true"/>
            <select idref="SC-6" selected="true"/>
            <select idref="SC-7" selected="true"/>
            <select idref="SC-8" selected="true"/>
            <select idref="SC-9" selected="true"/>
            <select idref="SC-10" selected="true"/>
            <select idref="SC-11" selected="0"/>
            <select idref="SC-12" selected="true"/>
            <select idref="SC-13" selected="true"/>
            <select idref="SC-14" selected="true"/>
            <select idref="SC-15" selected="true"/>
            <select idref="SC-16" selected="0"/>
            <select idref="SC-17" selected="true"/>
            <select idref="SC-18" selected="true"/>
            <select idref="SC-19" selected="true"/>
            <select idref="SC-20" selected="true"/>
            <select idref="SC-21" selected="true"/>
            <select idref="SC-22" selected="true"/>
            <select idref="SC-23" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SI  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SI-1" selected="true"/>
            <select idref="SI-2" selected="true"/>
            <select idref="SI-3" selected="true"/>
            <select idref="SI-4" selected="true"/>
            <select idref="SI-5" selected="true"/>
            <select idref="SI-6" selected="true"/>
            <select idref="SI-7" selected="true"/>
            <select idref="SI-8" selected="true"/>
            <select idref="SI-9" selected="true"/>
            <select idref="SI-10" selected="true"/>
            <select idref="SI-11" selected="true"/>
            <select idref="SI-12" selected="true"/>
      </Profile>
      <Profile id="all_800_53" abstract="true">
            <title>800-53 All</title>
            <description>This profile selects all the security controls that are recommended by Special Publication 800-53 for information systems. Each control has an effect on other groups within this document as individual rule require certain controls to be selected.</description>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AC-1" selected="true"/>
            <select idref="AC-2" selected="true"/>
            <select idref="AC-3" selected="true"/>
            <select idref="AC-4" selected="true"/>
            <select idref="AC-5" selected="true"/>
            <select idref="AC-6" selected="true"/>
            <select idref="AC-7" selected="true"/>
            <select idref="AC-8" selected="true"/>
            <select idref="AC-9" selected="true"/>
            <select idref="AC-10" selected="true"/>
            <select idref="AC-11" selected="true"/>
            <select idref="AC-12" selected="true"/>
            <select idref="AC-13" selected="true"/>
            <select idref="AC-14" selected="true"/>
            <select idref="AC-15" selected="true"/>
            <select idref="AC-16" selected="true"/>
            <select idref="AC-17" selected="true"/>
            <select idref="AC-18" selected="true"/>
            <select idref="AC-19" selected="true"/>
            <select idref="AC-20" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AT  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AT-1" selected="true"/>
            <select idref="AT-2" selected="true"/>
            <select idref="AT-3" selected="true"/>
            <select idref="AT-4" selected="true"/>
            <select idref="AT-5" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  AU  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="AU-1" selected="true"/>
            <select idref="AU-2" selected="true"/>
            <select idref="AU-3" selected="true"/>
            <select idref="AU-4" selected="true"/>
            <select idref="AU-5" selected="true"/>
            <select idref="AU-6" selected="true"/>
            <select idref="AU-7" selected="true"/>
            <select idref="AU-8" selected="true"/>
            <select idref="AU-9" selected="true"/>
            <select idref="AU-10" selected="true"/>
            <select idref="AU-11" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CA-1" selected="true"/>
            <select idref="CA-2" selected="true"/>
            <select idref="CA-3" selected="true"/>
            <select idref="CA-4" selected="true"/>
            <select idref="CA-5" selected="true"/>
            <select idref="CA-6" selected="true"/>
            <select idref="CA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CM  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CM-1" selected="true"/>
            <select idref="CM-2" selected="true"/>
            <select idref="CM-3" selected="true"/>
            <select idref="CM-4" selected="true"/>
            <select idref="CM-5" selected="true"/>
            <select idref="CM-6" selected="true"/>
            <select idref="CM-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  CP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="CP-1" selected="true"/>
            <select idref="CP-2" selected="true"/>
            <select idref="CP-3" selected="true"/>
            <select idref="CP-4" selected="true"/>
            <select idref="CP-5" selected="true"/>
            <select idref="CP-6" selected="true"/>
            <select idref="CP-7" selected="true"/>
            <select idref="CP-8" selected="true"/>
            <select idref="CP-9" selected="true"/>
            <select idref="CP-10" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IA-1" selected="true"/>
            <select idref="IA-2" selected="true"/>
            <select idref="IA-3" selected="true"/>
            <select idref="IA-4" selected="true"/>
            <select idref="IA-5" selected="true"/>
            <select idref="IA-6" selected="true"/>
            <select idref="IA-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  IR  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="IR-1" selected="true"/>
            <select idref="IR-2" selected="true"/>
            <select idref="IR-3" selected="true"/>
            <select idref="IR-4" selected="true"/>
            <select idref="IR-5" selected="true"/>
            <select idref="IR-6" selected="true"/>
            <select idref="IR-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MA-1" selected="true"/>
            <select idref="MA-2" selected="true"/>
            <select idref="MA-3" selected="true"/>
            <select idref="MA-4" selected="true"/>
            <select idref="MA-5" selected="true"/>
            <select idref="MA-6" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  MP  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="MP-1" selected="true"/>
            <select idref="MP-2" selected="true"/>
            <select idref="MP-3" selected="true"/>
            <select idref="MP-4" selected="true"/>
            <select idref="MP-5" selected="true"/>
            <select idref="MP-6" selected="true"/>
            <select idref="MP-7" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PE  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PE-1" selected="true"/>
            <select idref="PE-2" selected="true"/>
            <select idref="PE-3" selected="true"/>
            <select idref="PE-4" selected="true"/>
            <select idref="PE-5" selected="true"/>
            <select idref="PE-6" selected="true"/>
            <select idref="PE-7" selected="true"/>
            <select idref="PE-8" selected="true"/>
            <select idref="PE-9" selected="true"/>
            <select idref="PE-10" selected="true"/>
            <select idref="PE-11" selected="true"/>
            <select idref="PE-12" selected="true"/>
            <select idref="PE-13" selected="true"/>
            <select idref="PE-14" selected="true"/>
            <select idref="PE-15" selected="true"/>
            <select idref="PE-16" selected="true"/>
            <select idref="PE-17" selected="true"/>
            <select idref="PE-18" selected="true"/>
            <select idref="PE-19" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PL  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PL-1" selected="true"/>
            <select idref="PL-2" selected="true"/>
            <select idref="PL-3" selected="true"/>
            <select idref="PL-4" selected="true"/>
            <select idref="PL-5" selected="true"/>
            <select idref="PL-6" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  PS  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="PS-1" selected="true"/>
            <select idref="PS-2" selected="true"/>
            <select idref="PS-3" selected="true"/>
            <select idref="PS-4" selected="true"/>
            <select idref="PS-5" selected="true"/>
            <select idref="PS-6" selected="true"/>
            <select idref="PS-7" selected="true"/>
            <select idref="PS-8" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  RA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="RA-1" selected="true"/>
            <select idref="RA-2" selected="true"/>
            <select idref="RA-3" selected="true"/>
            <select idref="RA-4" selected="true"/>
            <select idref="RA-5" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SA  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SA-1" selected="true"/>
            <select idref="SA-2" selected="true"/>
            <select idref="SA-3" selected="true"/>
            <select idref="SA-4" selected="true"/>
            <select idref="SA-5" selected="true"/>
            <select idref="SA-6" selected="true"/>
            <select idref="SA-7" selected="true"/>
            <select idref="SA-8" selected="true"/>
            <select idref="SA-9" selected="true"/>
            <select idref="SA-10" selected="true"/>
            <select idref="SA-11" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SC  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SC-1" selected="true"/>
            <select idref="SC-2" selected="true"/>
            <select idref="SC-3" selected="true"/>
            <select idref="SC-4" selected="true"/>
            <select idref="SC-5" selected="true"/>
            <select idref="SC-6" selected="true"/>
            <select idref="SC-7" selected="true"/>
            <select idref="SC-8" selected="true"/>
            <select idref="SC-9" selected="true"/>
            <select idref="SC-10" selected="true"/>
            <select idref="SC-11" selected="true"/>
            <select idref="SC-12" selected="true"/>
            <select idref="SC-13" selected="true"/>
            <select idref="SC-14" selected="true"/>
            <select idref="SC-15" selected="true"/>
            <select idref="SC-16" selected="true"/>
            <select idref="SC-17" selected="true"/>
            <select idref="SC-18" selected="true"/>
            <select idref="SC-19" selected="true"/>
            <select idref="SC-20" selected="true"/>
            <select idref="SC-21" selected="true"/>
            <select idref="SC-22" selected="true"/>
            <select idref="SC-23" selected="true"/>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~  SI  ~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <select idref="SI-1" selected="true"/>
            <select idref="SI-2" selected="true"/>
            <select idref="SI-3" selected="true"/>
            <select idref="SI-4" selected="true"/>
            <select idref="SI-5" selected="true"/>
            <select idref="SI-6" selected="true"/>
            <select idref="SI-7" selected="true"/>
            <select idref="SI-8" selected="true"/>
            <select idref="SI-9" selected="true"/>
            <select idref="SI-10" selected="true"/>
            <select idref="SI-11" selected="true"/>
            <select idref="SI-12" selected="true"/>
      </Profile>
      <!-- ==================================================================================================== -->
      <!-- =========================================  FDCC PROFILES  ========================================== -->
      <!-- ==================================================================================================== -->
      <!--                                                                                                      -->
      <!-- These profiles outline the specific guidance outlined by the Federal Desktop Core Configuration.     -->
      <!-- Each defines the set of XCCDF rules that are applicable for that guidance as well as specific values -->
      <!-- to be used when determining complinace.                                                              -->
      <!--                                                                                                      -->
      <Profile id="federal_desktop_core_configuration_version_1.2.1.0" extends="all_800_53">
            <title>Federal Desktop Core Configuration version 1.2.1.0</title>
            <description>This profile represents guidance outlined in Federal Core Configuration settings for Windows Vista Firewall on desktop systems.</description>
            <!-- '''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''' -->
            <!-- '''  3 - FDCC Other Settings                                                               ''' -->
            <!-- '''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''' -->
            <select idref="ipv6_block_protocols_41" selected="true"/>
            <select idref="ipv6_block_udp_3544" selected="true"/>
            <select idref="domain_profile_log_dropped_packets" selected="true"/>
            <select idref="domain_profile_logged_successful_connections" selected="true"/>
            <select idref="domain_profile_name" selected="true"/>
            <select idref="domain_profile_size_limit" selected="true"/>
            <select idref="domain_profile_display_notification" selected="true"/>
            <select idref="domain_profile_apply_local_connection_security_rules" selected="true"/>
            <select idref="domain_profile_apply_local_firewall_rules" selected="true"/>
            <select idref="domain_profile_allow_unicast_response" selected="true"/>
            <select idref="domain_profile_firewall_state" selected="true"/>
            <select idref="domain_profile_inbound_connections" selected="true"/>
            <select idref="domain_profile_outbound_connections" selected="true"/>
            <select idref="private_profile_log_dropped_packets" selected="true"/>
            <select idref="private_profile_logged_successful_connections" selected="true"/>
            <select idref="private_profile_name" selected="true"/>
            <select idref="private_profile_size_limit" selected="true"/>
            <select idref="private_profile_display_notification" selected="true"/>
            <select idref="private_profile_apply_local_connection_security_rules" selected="true"/>
            <select idref="private_profile_apply_local_firewall_rules" selected="true"/>
            <select idref="private_profile_allow_unicast_response" selected="true"/>
            <select idref="private_profile_firewall_state" selected="true"/>
            <select idref="private_profile_inbound_connections" selected="true"/>
            <select idref="private_profile_outbound_connections" selected="true"/>
            <select idref="public_profile_log_dropped_packets" selected="true"/>
            <select idref="public_profile_logged_successful_connections" selected="true"/>
            <select idref="public_profile_name" selected="true"/>
            <select idref="public_profile_size_limit" selected="true"/>
            <select idref="public_profile_display_notification" selected="true"/>
            <select idref="public_profile_apply_local_connection_security_rules" selected="true"/>
            <select idref="public_profile_apply_local_firewall_rules" selected="true"/>
            <select idref="public_profile_allow_unicast_response" selected="true"/>
            <select idref="public_profile_firewall_state" selected="true"/>
            <select idref="public_profile_inbound_connections" selected="true"/>
            <select idref="public_profile_outbound_connections" selected="true"/>
            <!-- '''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''' -->
            <!-- '''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''' -->
            <!-- '''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''' -->
            <!-- ipv6_block_protocols_41 -->
            <!-- ipv6_block_udp_3544 -->
            <refine-value idref="domain_profile_log_dropped_packets_var" selector="yes"/>
            <refine-value idref="domain_profile_logged_successful_connections_var" selector="yes"/>
            <refine-value idref="domain_profile_name_var" selector="firewall_dir"/>
            <refine-value idref="domain_profile_size_limit_var" selector="16384_kb"/>
            <refine-value idref="domain_profile_display_notification_var" selector="yes"/>
            <refine-value idref="domain_profile_apply_local_connection_security_rules_var" selector="no"/>
            <refine-value idref="domain_profile_apply_local_firewall_rules_var" selector="no"/>
            <refine-value idref="domain_profile_allow_unicast_response_var" selector="no"/>
            <refine-value idref="domain_profile_firewall_state_var" selector="on"/>
            <refine-value idref="domain_profile_inbound_connections_var" selector="block"/>
            <refine-value idref="domain_profile_outbound_connections_var" selector="allow"/>
            <refine-value idref="private_profile_log_dropped_packets_var" selector="yes"/>
            <refine-value idref="private_profile_logged_successful_connections_var" selector="yes"/>
            <refine-value idref="private_profile_name_var" selector="firewall_dir"/>
            <refine-value idref="private_profile_size_limit_var" selector="16384_kb"/>
            <refine-value idref="private_profile_display_notification_var" selector="yes"/>
            <refine-value idref="private_profile_apply_local_connection_security_rules_var" selector="no"/>
            <refine-value idref="private_profile_apply_local_firewall_rules_var" selector="no"/>
            <refine-value idref="private_profile_allow_unicast_response_var" selector="no"/>
            <refine-value idref="private_profile_firewall_state_var" selector="on"/>
            <refine-value idref="private_profile_inbound_connections_var" selector="block"/>
            <refine-value idref="private_profile_outbound_connections_var" selector="allow"/>
            <refine-value idref="public_profile_log_dropped_packets_var" selector="yes"/>
            <refine-value idref="public_profile_logged_successful_connections_var" selector="yes"/>
            <refine-value idref="public_profile_name_var" selector="firewall_dir"/>
            <refine-value idref="public_profile_size_limit_var" selector="16384_kb"/>
            <refine-value idref="public_profile_display_notification_var" selector="yes"/>
            <refine-value idref="public_profile_apply_local_connection_security_rules_var" selector="no"/>
            <refine-value idref="public_profile_apply_local_firewall_rules_var" selector="no"/>
            <refine-value idref="public_profile_allow_unicast_response_var" selector="no"/>
            <refine-value idref="public_profile_firewall_state_var" selector="on"/>
            <refine-value idref="public_profile_inbound_connections_var" selector="block"/>
            <refine-value idref="public_profile_outbound_connections_var" selector="allow"/>
      </Profile>
      <!-- ==================================================================================================== -->
      <!-- ================================  NIST SP 800-53 (FISMA) Controls  ================================= -->
      <!-- ==================================================================================================== -->
      <!--                                                                                                      -->
      <!-- The following group contains all the different controls defined by NIST SP 800-53.  These controls   -->
      <!-- are hidden as they should not appear in any document generated from this file pertaining to specific -->
      <!-- security guidance.  These controls are used by the 800-53 profiles to enable high-level guidance     -->
      <!-- that is then passed down to the FDCC profiles and used to enable specific XCCDF Rules.               -->
      <!--                                                                                                      -->
      <Group id="nist_sp80053_controls" hidden="true">
            <title>NIST SP 800-53 Controls</title>
            <Group id="access_control_checks" hidden="true">
                  <title>Applicable 800-53 Access Control Checks</title>
                  <Group id="AC-1" hidden="true">
                        <title>Access Control Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 11.1.1, 11.4.1, 15.1.1</reference>
                        <reference>NIST 800-26: 15, 16</reference>
                        <reference>DOD 8500.2: ECAN-1, ECPA-1, PRAS-1, DCAR-1</reference>
                        <reference>DCID 6/3: 2.B.4.e(5), 4.B.1.a(1)(b)</reference>
                  </Group>
                  <Group id="AC-2" hidden="true">
                        <title>Account Management</title>
                        <reference>ISO/IEC 17799: 6.2.2, 6.2.3, 8.3.3, 11.2.1, 11.2.2, 11.2.4, 11.7.2</reference>
                        <reference>NIST 800-26: 6.1.8, 15.1.1, 15.1.4, 15.1.15, 15.1.8, 15.2.2, 16.1.3, 16.1.5, 16.2.12</reference>
                        <reference>GAO FISCAM: AC-2.1 AC-2.2, AC-3.2, SP-4.1</reference>
                        <reference>DOD 8500.2: IAAC-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(3)</reference>
                  </Group>
                  <Group id="AC-3" hidden="true">
                        <title>Access Enforcement</title>
                        <reference>ISO/IEC 17799: 11.2.4, 11.4.5</reference>
                        <reference>NIST 800-26: 10.1.2, 15.1.1, 16.1.1, 16.1.2, 16.1.3, 16.1.7, 16.1.9, 16.2.1, 16.2.7, 16.2.10, 16.2.11, 16.2.15</reference>
                        <reference>GAO FISCAM: AC-2, AC-3.2</reference>
                        <reference>DOD 8500.2: DCFA-1, ECAN-1, EBRU-1, PRNK-1, ECCD-1, ECSD-2</reference>
                        <reference>DCID 6/3: Discretionary Access Control (DAC): 4.B.2.a(2), Mandatory Access Control (MAC): 4.B.4.a(3)</reference>
                  </Group>
                  <Group id="AC-4" hidden="true">
                        <title>Information Flow Enforcement</title>
                        <reference>ISO/IEC 17799: 10.6.2, 11.4.5, 11.4.6, 11.4.7</reference>
                        <reference>DOD 8500.2: EBBD-1, EBBD-2</reference>
                        <reference>DCID 6/3: 4.B.3.a(3), 7.B.3.g</reference>
                  </Group>
                  <Group id="AC-5" hidden="true">
                        <title>Separation of Duties</title>
                        <reference>ISO/IEC 17799: 10.1.3, 10.6.1, 10.10.1</reference>
                        <reference>NIST 800-26: 6.1.1, 6.1.2, 6.1.3, 15.2.1, 16.1.2, 17.1.5</reference>
                        <reference>GAO FISCAM: AC-3.2, SD-1.2</reference>
                        <reference>DOD 8500.2: ECLP-1</reference>
                        <reference>DCID 6/3: 2.A.1, 4.B.3.a(18)</reference>
                  </Group>
                  <Group id="AC-6" hidden="true">
                        <title>Least Privilege</title>
                        <reference>ISO/IEC 17799: 11.2.2</reference>
                        <reference>NIST 800-26: 16.1.2, 16.1.3, 17.1.5</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECLP-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(10)</reference>
                  </Group>
                  <Group id="AC-7" hidden="true">
                        <title>Unsuccessful Login Attempts</title>
                        <reference>ISO/IEC 17799: 11.5.1</reference>
                        <reference>NIST 800-26: 15.1.14</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECLO-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(17)(c)-(d)</reference>
                  </Group>
                  <Group id="AC-8" hidden="true">
                        <title>System Use Notification</title>
                        <reference>ISO/IEC 17799: 11.5.1, 15.1.5</reference>
                        <reference>NIST 800-26: 16.2.13, 16.3.1, 17.1.9</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECWM-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(6)</reference>
                  </Group>
                  <Group id="AC-9" hidden="true">
                        <title>Previous Logon Notification</title>
                        <reference>ISO/IEC 17799: 11.5.1</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECLO-2</reference>
                  </Group>
                  <Group id="AC-10" hidden="true">
                        <title>Concurrent Session Control</title>
                        <reference>DOD 8500.2: ECLO-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(17)(a)</reference>
                  </Group>
                  <Group id="AC-11" hidden="true">
                        <title>Session Lock</title>
                        <reference>ISO/IEC 17799: 11.3.2</reference>
                        <reference>NIST 800-26: 16.1.4</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: PESL-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(5)</reference>
                  </Group>
                  <Group id="AC-12" hidden="true">
                        <title>Session Termination</title>
                        <reference>ISO/IEC 17799: 11.3.2, 11.5.5</reference>
                        <reference>NIST 800-26: 16.1.4, 16.2.6</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DCID 6/3: 4.B.2.a(17)(b)</reference>
                  </Group>
                  <Group id="AC-13" hidden="true">
                        <title>Supervision and Review—Access Control</title>
                        <reference>ISO/IEC 17799: 10.10.2, 11.2.4</reference>
                        <reference>NIST 800-26: 7.1.10, 11.2.2, 16.1.10, 16.2.5, 17.1.6, 17.1.7</reference>
                        <reference>GAO FISCAM: AC-4, AC-4.3, SS-2.2</reference>
                        <reference>DOD 8500.2: ECAT-1, ECAT-2, E3.3.9</reference>
                        <reference>DCID 6/3: 2.B.7.c, 4.B.3.a(8)(b)</reference>
                  </Group>
                  <Group id="AC-14" hidden="true">
                        <title>Permitted Actions without Identification or Authentication</title>
                        <reference>NIST 800-26: 16.2.12</reference>
                        <reference>DCID 6/3: 7.D.3.a</reference>
                  </Group>
                  <Group id="AC-15" hidden="true">
                        <title>Automated Marking</title>
                        <reference>ISO/IEC 17799: 7.2.2</reference>
                        <reference>NIST 800-26: 8.2.4, 16.1.6</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECML-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(11)</reference>
                  </Group>
                  <Group id="AC-16" hidden="true">
                        <title>Automated Labeling</title>
                        <reference>ISO/IEC 17799: 7.2.2</reference>
                        <reference>NIST 800-26: 16.1.6</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECML-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(3), 4.B.4.a(15), 4.B.4.a(16)</reference>
                  </Group>
                  <Group id="AC-17" hidden="true">
                        <title>Remote Access</title>
                        <reference>ISO/IEC 17799: 11.4.2, 11.4.3, 11.4.4</reference>
                        <reference>NIST 800-26: 16.2.4, 16.2.8</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: EBRP-1, EBRU-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(1)(b), 4.B.3.a(11), 7.D.2.e</reference>
                  </Group>
                  <Group id="AC-18" hidden="true">
                        <title>Wireless Access Restrictions</title>
                        <reference>ISO/IEC 17799: 11.4.2, 11.7.1, 11.7.2</reference>
                        <reference>DOD 8500.2: ECCT-1, ECWN-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(8), 5.B.3.a(11)</reference>
                  </Group>
                  <Group id="AC-19" hidden="true">
                        <title>Access Control for Portable and Mobile Systems</title>
                        <reference>ISO/IEC 17799: 11.7.1</reference>
                        <reference>NIST 800-26: 7.3.1, 7.3.2</reference>
                        <reference>DOD 8500.2: ECWN-1</reference>
                        <reference>DCID 6/3: 8.B.6.c, 9.G.4</reference>
                  </Group>
                  <Group id="AC-20" hidden="true">
                        <title>Use of External Information Systems</title>
                        <reference>ISO/IEC 17799: 6.1.4, 9.2.5, 11.7.1</reference>
                        <reference>NIST 800-26: 10.2.13</reference>
                        <reference>DCID 6/3: 8.B.6.c</reference>
                  </Group>
            </Group>
            <Group id="awareness_and_training" hidden="true">
                  <title>Applicable 800-53 Awareness and Training</title>
                  <Group id="AT-1" hidden="true">
                        <title>Security Awareness and Training Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 5.1.1, 8.2.2, 15.1.1</reference>
                        <reference>NIST 800-26: 13</reference>
                        <reference>DOD 8500.2: PRTN-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.3.c, Manual: 2.B.2.b(8); 2.B.4.e(6)</reference>
                  </Group>
                  <Group id="AT-2" hidden="true">
                        <title>Security Awareness</title>
                        <reference>ISO/IEC 17799: 6.2.3, 8.2.2, 10.4.1, 11.7.1, 13.1.1, 14.1.4, 15.1.4</reference>
                        <reference>NIST 800-26: 13.1.4, 13.1.5</reference>
                        <reference>DOD 8500.2: PRTN-1</reference>
                        <reference>DCID 6/3: 8.B.1</reference>
                  </Group>
                  <Group id="AT-3" hidden="true">
                        <title>Security Training</title>
                        <reference>ISO/IEC 17799: 8.2.2, 10.3.2, 11.7.1, 13.1.1, 14.1.4</reference>
                        <reference>NIST 800-26: 13.1, 13.1.3, 13.1.5</reference>
                        <reference>DOD 8500.2: PRTN-1</reference>
                        <reference>DCID 6/3: 8.B.1</reference>
                  </Group>
                  <Group id="AT-4" hidden="true">
                        <title>Security Training Records</title>
                        <reference>NIST 800-26: 13.1.2</reference>
                        <reference>DCID 6/3: 8.B.1</reference>
                  </Group>
                  <Group id="AT-5" hidden="true">
                        <title>Contacts with Security Groups and Associations</title>
                        <reference>ISO/IEC 17799: 6.1.7</reference>
                  </Group>
            </Group>
            <Group id="audit_and_accountablility" hidden="true">
                  <title>Applicable 800-53 Audit and Accountability</title>
                  <Group id="AU-1" hidden="true">
                        <title>Audit and Accountability Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 10.1, 15.1.1</reference>
                        <reference>NIST 800-26: 17</reference>
                        <reference>DOD 8500.2: ECAT-1, ECTB-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.d, Manual: 2.B.4.e(5); 4.B.2.a(4)</reference>
                  </Group>
                  <Group id="AU-2" hidden="true">
                        <title>Auditable Events</title>
                        <reference>ISO/IEC 17799: 10.10.1</reference>
                        <reference>NIST 800-26: 17.1.1, 17.1.2, 17.1.4</reference>
                        <reference>DOD 8500.2: ECAR-3</reference>
                        <reference>DCID 6/3: 4.B.2.a(4)(d)</reference>
                  </Group>
                  <Group id="AU-3" hidden="true">
                        <title>Content of Audit Records</title>
                        <reference>ISO/IEC 17799: 10.10.1, 10.10.4</reference>
                        <reference>NIST 800-26: 17.1.1</reference>
                        <reference>DOD 8500.2: ECAR-1, ECAR-2, ECAR-3, ECLC-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(4)(a), 4.B.2.a(5)(a)</reference>
                  </Group>
                  <Group id="AU-4" hidden="true">
                        <title>Audit Storage Capacity</title>
                        <reference>ISO/IEC 17799: 10.10.3</reference>
                        <reference>DCID 6/3: 5.B.2.a(5)(a)(1)</reference>
                  </Group>
                  <Group id="AU-5" hidden="true">
                        <title>Response to Audit Processing Failures</title>
                        <reference>ISO/IEC 17799: 10.10.3</reference>
                        <reference>DCID 6/3: 4.B.4.a(9)(d)</reference>
                  </Group>
                  <Group id="AU-6" hidden="true">
                        <title>Audit Monitoring, Analysis, and Reporting</title>
                        <reference>ISO/IEC 17799: 10.10.2, 10.10.4, 13.2.1</reference>
                        <reference>NIST 800-26: 16.2.5, 17.1.7, 17.1.8</reference>
                        <reference>GAO FISCAM: AC-4.3</reference>
                        <reference>DOD 8500.2: ECAT-1, E3.3.9</reference>
                        <reference>DCID 6/3: 4.B.4.a(10)</reference>
                  </Group>
                  <Group id="AU-7" hidden="true">
                        <title>Audit Reduction and Report Generation</title>
                        <reference>ISO/IEC 17799: 10.10.3</reference>
                        <reference>NIST 800-26: 17.1.2, 17.1.7</reference>
                        <reference>DOD 8500.2: ECRG-1</reference>
                        <reference>DCID 6/3: 4.B.3.a(6)</reference>
                  </Group>
                  <Group id="AU-8" hidden="true">
                        <title>Time Stamps</title>
                        <reference>ISO/IEC 17799: 10.10.6</reference>
                        <reference>DOD 8500.2: ECAR-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(4)(a)</reference>
                  </Group>
                  <Group id="AU-9" hidden="true">
                        <title>Protection of Audit Information</title>
                        <reference>ISO/IEC 17799: 10.10.3, 15.1.3, 15.3.2</reference>
                        <reference>NIST 800-26: 17.1.3, 17.1.4</reference>
                        <reference>DOD 8500.2: ECTP-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(4)(b)</reference>
                  </Group>
                  <Group id="AU-10" hidden="true">
                        <title>Non-repudiation</title>
                        <reference>ISO/IEC 17799: 10.8.2, 10.9.1, 12.3.1</reference>
                        <reference>NIST 800-26: 15.1.2, 17.1.1</reference>
                        <reference>DOD 8500.2: DCNR-1</reference>
                        <reference>DCID 6/3: 5.B.3.a(8)</reference>
                  </Group>
                  <Group id="AU-11" hidden="true">
                        <title>Audit Record Retention</title>
                        <reference>ISO/IEC 17799: 10.10.1, 15.1.3</reference>
                        <reference>NIST 800-26: 17.1.4</reference>
                        <reference>DOD 8500.2: ECRR-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(4)(c)</reference>
                  </Group>
            </Group>
            <Group id="certification_accreditation_and_security_assessment" hidden="true">
                  <title>Applicable 800-53 Certification, Accreditation, and Security Assessment</title>
                  <Group id="CA-1" hidden="true">
                        <title>Certification, Accreditation, and Security Assessment Policies and Procedures</title>
                        <reference>ISO/IEC 17799: 6.1.4, 10.3.2, 15.1.1</reference>
                        <reference>NIST 800-26: 2, 4</reference>
                        <reference>DOD 8500.2: DCAR-1, DCII-1</reference>
                        <reference>DCID 6/3: DCID: B.3, Manual: 2.B.2.b(1)</reference>
                  </Group>
                  <Group id="CA-2" hidden="true">
                        <title>Security Assessments</title>
                        <reference>ISO/IEC 17799: 6.1.8, 15.2.1, 15.2.2</reference>
                        <reference>NIST 800-26: 2.1.1, 2.1.3, 2.1.4</reference>
                        <reference>GAO FISCAM: SP-5.1</reference>
                        <reference>DOD 8500.2: DCII-1, ECMT-1, PEPS-1, E3.3.10</reference>
                        <reference>DCID 6/3: DCID: B.2.b; B.3.a, Manual: 4.B.2.b(6); 5.B.1.b(1); 9.B.1; 9.B.4</reference>
                  </Group>
                  <Group id="CA-3" hidden="true">
                        <title>Information System Connections</title>
                        <reference>ISO/IEC 17799: 10.6.2, 10.9.1, 11.4.5, 11.4.6, 11.4.7</reference>
                        <reference>NIST 800-26: 1.1.1, 3.2.9, 4.1.8, 12.2.3</reference>
                        <reference>GAO FISCAM: CC-2.1</reference>
                        <reference>DOD 8500.2: DCID-1, EBCR-1 EBRU-1, EBPW-1, ECIC-1</reference>
                        <reference>DCID 6/3: 9.B.3, 9.D.3.c</reference>
                  </Group>
                  <Group id="CA-4" hidden="true">
                        <title>Security Certification</title>
                        <reference>ISO/IEC 17799: 10.3.2</reference>
                        <reference>NIST 800-26: 2.1.2, 3.2.3, 3.2.5, 3.2.6, 4.1.1, 4.1.6, 11.2.8. 12.2.5</reference>
                        <reference>GAO FISCAM: CC-2.1</reference>
                        <reference>DOD 8500.2: DCAR-1, 5.7.5</reference>
                        <reference>DCID 6/3: DCID: B.3, Manual: 4.B.3.b(8); 9.E.2.a(2); 9.E.2.a(3)</reference>
                  </Group>
                  <Group id="CA-5" hidden="true">
                        <title>Plan of Action and Milestones</title>
                        <reference>ISO/IEC 17799: 15.2.1</reference>
                        <reference>NIST 800-26: 1.1.5, 1.2.3, 2.2.1, 4.2.1</reference>
                        <reference>GAO FISCAM: SP-5.1 SP-5.2</reference>
                        <reference>DOD 8500.2: 5.7.5</reference>
                        <reference>DCID 6/3: 9.E.2.a(3)(a)</reference>
                  </Group>
                  <Group id="CA-6" hidden="true">
                        <title>Security Accreditation</title>
                        <reference>ISO/IEC 17799: 10.3.2</reference>
                        <reference>NIST 800-26: 3.2.7, 12.2.5</reference>
                        <reference>DOD 8500.2: 5.7.5</reference>
                        <reference>DCID 6/3: DCID: B.3, Manual: 9.D.3; 9.D.4</reference>
                  </Group>
                  <Group id="CA-7" hidden="true">
                        <title>Continuous Monitoring</title>
                        <reference>ISO/IEC 17799: 15.2.1, 15.2.2</reference>
                        <reference>NIST 800-26: 10.2.1</reference>
                        <reference>DOD 8500.2: DCCB-1, DCPR-1, E3.3.9</reference>
                        <reference>DCID 6/3: DCID: B.2.d; Manual: 2.B.4.e(7); 2.B.5.c(10); 5.B.2.b(2); 9.B.1; 9.D.7</reference>
                  </Group>
            </Group>
            <Group id="configuration_management" hidden="true">
                  <title>Applicable 800-53 Configuration Management</title>
                  <Group id="CM-1" hidden="true">
                        <title>Configuration Management Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 12.4.1, 12.5.1, 15.1.1</reference>
                        <reference>DOD 8500.2: DCCB-1, DCPR-1, DCAR-1, E3.3.8</reference>
                        <reference>DCID 6/3: DCID: B.2.a Manual: 2.B.4.e(5); 5.B.2.a(5)</reference>
                  </Group>
                  <Group id="CM-2" hidden="true">
                        <title>Baseline Configuration and System Component Inventory</title>
                        <reference>ISO/IEC 17799: 7.1.1, 15.1.2</reference>
                        <reference>NIST 800-26: 1.1.1, 3.1.9, 10.2.7, 10.2.9, 12.1.4</reference>
                        <reference>GAO FISCAM: CC-2.3, CC-3.1, SS-1.2</reference>
                        <reference>DOD 8500.2: DCHW-1, DCSW-1</reference>
                        <reference>DCID 6/3: 2.B.7.c(7), 4.B.1.c(3), 4.B.2.b(6)</reference>
                  </Group>
                  <Group id="CM-3" hidden="true">
                        <title>Configuration Change Control</title>
                        <reference>ISO/IEC 17799: 10.1.2, 10.2.3, 12.4.1, 12.5.1, 12.5.2, 12.5.3</reference>
                        <reference>NIST 800-26: 3.1.4, 10.2.2, 10.2.3, 10.2.8, 10.2.10, 10.2.11</reference>
                        <reference>GAO FISCAM: SS-3.2, CC-2.2</reference>
                        <reference>DOD 8500.2: DCPR-1</reference>
                        <reference>DCID 6/3: 2.B.7.c(7) 4.B.1.c(3), 4.B.2.b(6), 5.B.2.a(5)</reference>
                  </Group>
                  <Group id="CM-4" hidden="true">
                        <title>Monitoring Configuration Changes</title>
                        <reference>ISO/IEC 17799: 10.1.2</reference>
                        <reference>NIST 800-26: 10.2.1, 10.2.4</reference>
                        <reference>GAO FISCAM: SS-3.1, SS-3.2, CC-2.1</reference>
                        <reference>DOD 8500.2: DCPR-1, E3.3.8</reference>
                        <reference>DCID 6/3: 2.B.7.c(7), 4.B.1.c(3), 5.B.2.b(2), 8.B.8.c(7)</reference>
                  </Group>
                  <Group id="CM-5" hidden="true">
                        <title>Access Restrictions for Change</title>
                        <reference>ISO/IEC 17799: 11.6.1</reference>
                        <reference>NIST 800-26: 6.1.3, 6.1.4, 10.1.1, 10.1.4, 10.1.5</reference>
                        <reference>GAO FISCAM: SD-1.1, SS-1.2, SS-2.1</reference>
                        <reference>DOD 8500.2: DCPR-1, ECSD-2</reference>
                        <reference>DCID 6/3: 5.B.3.a(2)(b)</reference>
                  </Group>
                  <Group id="CM-6" hidden="true">
                        <title>Configuration Settings</title>
                        <reference>NIST 800-26: 10.2.6, 10.3.1, 16.2.2, 16.2.3, 16.2.11</reference>
                        <reference>DOD 8500.2: DCSS-1, ECSC-1, E3.3.8</reference>
                        <reference>DCID 6/3: 4.B.2.a(10)</reference>
                  </Group>
                  <Group id="CM-7" hidden="true">
                        <title>Least Functionality</title>
                        <reference>NIST 800-26: 10.3.1</reference>
                        <reference>DOD 8500.2: DCPP-1, ECIM-1, ECVI-1, E3.3.8</reference>
                        <reference>DCID 6/3: 4.B.2.a(10), 7.D.2.b</reference>
                  </Group>
            </Group>
            <Group id="contingency_planning" hidden="true">
                  <title>Applicable 800-53 Contingency Planning</title>
                  <Group id="CP-1" hidden="true">
                        <title>Contingency Planning Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 5.1.1, 10.4.1, 14.1.1, 14.1.3, 15.1.1</reference>
                        <reference>NIST 800-26: 9</reference>
                        <reference>DOD 8500.2: COBR-1, DCAR-1</reference>
                        <reference>DCID 6/3: 2.B.4.e(5), 6.B.1.a(1)</reference>
                  </Group>
                  <Group id="CP-2" hidden="true">
                        <title>Contingency Plan</title>
                        <reference>ISO/IEC 17799: 10.3.2, 10.4.1, 10.8.5, 14.1.3, 14.1.4</reference>
                        <reference>NIST 800-26: 4.1.4, 9.1.1, 9.2, 9.2.1, 9.2.2, 9.2.3, 9.2.10, 12.1.8, 12.2.2</reference>
                        <reference>GAO FISCAM: SC-3.1, SC-1.1</reference>
                        <reference>DOD 8500.2: CODP-1, COEF-1</reference>
                        <reference>DCID 6/3: 6.B.2.b(1)</reference>
                  </Group>
                  <Group id="CP-3" hidden="true">
                        <title>Contingency Training</title>
                        <reference>ISO/IEC 17799: 14.1.3, 14.1.4</reference>
                        <reference>NIST 800-26: 9.3.2</reference>
                        <reference>GAO FISCAM: SC-2.3</reference>
                        <reference>DOD 8500.2: PRTN-1</reference>
                        <reference>DCID 6/3: 8.B.1</reference>
                  </Group>
                  <Group id="CP-4" hidden="true">
                        <title>Contingency Plan Testing</title>
                        <reference>ISO/IEC 17799: 10.5.1, 14.1.5</reference>
                        <reference>NIST 800-26: 4.1.4, 9.3.3</reference>
                        <reference>GAO FISCAM: SC-3.1</reference>
                        <reference>DOD 8500.2: COED-1</reference>
                        <reference>DCID 6/3: 6.B.3.b(2)(b)</reference>
                  </Group>
                  <Group id="CP-5" hidden="true">
                        <title>Contingency Plan Update</title>
                        <reference>ISO/IEC 17799: 14.1.3, 14.1.5</reference>
                        <reference>NIST 800-26: 9.3.1, 9.3.3, 10.2.12</reference>
                        <reference>GAO FISCAM: SC-2.1, SC-3.1</reference>
                        <reference>DOD 8500.2: DCAR-1</reference>
                        <reference>DCID 6/3: 6.B.3.b(2)</reference>
                  </Group>
                  <Group id="CP-6" hidden="true">
                        <title>Alternate Storage Sites</title>
                        <reference>ISO/IEC 17799: 10.5.1</reference>
                        <reference>NIST 800-26: 9.2.4, 9.2.5, 9.2.7, 9.2.9</reference>
                        <reference>GAO FISCAM: SC-2.1, SC-3.1</reference>
                        <reference>DOD 8500.2: CODB-2</reference>
                        <reference>DCID 6/3: 6.B.2.a(2), 6.B.3.a(2)(d)</reference>
                  </Group>
                  <Group id="CP-7" hidden="true">
                        <title>Alternate Processing Sites</title>
                        <reference>ISO/IEC 17799: 14.1.4</reference>
                        <reference>NIST 800-26: 9.1.3, 9.2.4, 9.2.5, 9.2.7, 9.2.9</reference>
                        <reference>GAO FISCAM: SC-2.1, SC-3.1</reference>
                        <reference>DOD 8500.2: COAS-1, COEB-1, COSP-1, COSP-2</reference>
                        <reference>DCID 6/3: 6.B.3.a(2)(d)</reference>
                  </Group>
                  <Group id="CP-8" hidden="true">
                        <title>Telecommunications Services</title>
                        <reference>ISO/IEC 17799: 14.1.4</reference>
                        <reference>DCID 6/3: 6.B.2.a(4)</reference>
                  </Group>
                  <Group id="CP-9" hidden="true">
                        <title>Information System Backup</title>
                        <reference>ISO/IEC 17799: 10.5.1, 11.7.1</reference>
                        <reference>NIST 800-26: 9.1.1, 9.2.6, 9.2.9, 9.3.1, 12.1.9</reference>
                        <reference>GAO FISCAM: SC-2.1</reference>
                        <reference>DOD 8500.2: CODB-1, CODB-2, COSW-1</reference>
                        <reference>DCID 6/3: 6.B.1.a(2)</reference>
                  </Group>
                  <Group id="CP-10" hidden="true">
                        <title>Information System Recovery and Reconstitution</title>
                        <reference>ISO/IEC 17799: 14.1.4</reference>
                        <reference>NIST 800-26: 9.2.8</reference>
                        <reference>GAO FISCAM: SC-2.1</reference>
                        <reference>DOD 8500.2: COTR-1, ECND-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(4), 6.B.1.a(1), 6.B.2.a(3)(d)</reference>
                  </Group>
            </Group>
            <Group id="identification_and_authentication" hidden="true">
                  <title>Applicable 800-53 Identification and Authentication</title>
                  <Group id="IA-1" hidden="true">
                        <title>Identification and Authentication Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 15.1.1</reference>
                        <reference>NIST 800-26: 11.2.3</reference>
                        <reference>DOD 8500.2: IAIA-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a Manual: 2.B.4.e(5)</reference>
                  </Group>
                  <Group id="IA-2" hidden="true">
                        <title>User Identification and Authentication</title>
                        <reference>ISO/IEC 17799: 11.2.3, 11.4.2, 11.5.2</reference>
                        <reference>NIST 800-26: 15.1</reference>
                        <reference>DOD 8500.2: IAIA-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(7)</reference>
                  </Group>
                  <Group id="IA-3" hidden="true">
                        <title>Device Identification and Authentication</title>
                        <reference>ISO/IEC 17799: 11.4.2, 11.4.3, 11.7.1</reference>
                        <reference>NIST 800-26: 16.2.7</reference>
                        <reference>DCID 6/3: 4.B.5.a(14)</reference>
                  </Group>
                  <Group id="IA-4" hidden="true">
                        <title>Identifier Management</title>
                        <reference>ISO/IEC 17799: 11.2.3, 11.5.2</reference>
                        <reference>NIST 800-26: 15.1.1, 15.2.2, 15.1.8</reference>
                        <reference>GAO FISCAM: AC-2.1, AC-3.2, SP-4.1</reference>
                        <reference>DOD 8500.2: IAGA-1, IAIA-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(2)</reference>
                  </Group>
                  <Group id="IA-5" hidden="true">
                        <title>Authenticator Management</title>
                        <reference>ISO/IEC 17799: 11.5.2, 11.5.3</reference>
                        <reference>NIST 800-26: 15.1.6, 15.1.7, 15.1.9, 15.1.10, 15.1.11, 15.1.12, 15.1.13, 16.1.3, 16.2.3</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: IAKM-1, IATS-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(7), 4.B.3.a(11)</reference>
                  </Group>
                  <Group id="IA-6" hidden="true">
                        <title>Authenticator Feedback</title>
                        <reference>ISO/IEC 17799: 11.5.1</reference>
                        <reference>DCID 6/3: 4.B.2.a(7)(g)</reference>
                  </Group>
                  <Group id="IA-7" hidden="true">
                        <title>Cryptographic Module Authentication</title>
                        <reference>NIST 800-26: 16.1.7</reference>
                        <reference>DCID 6/3: 1.G</reference>
                  </Group>
            </Group>
            <Group id="incident_response" hidden="true">
                  <title>Applicable 800-53 Incident Response</title>
                  <Group id="IR-1" hidden="true">
                        <title>Incident Response Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 10.4.1, 13.1, 13.2.1, 15.1.1</reference>
                        <reference>NIST 800-26: 14</reference>
                        <reference>DOD 8500.2: VIIR-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.c; C.4 Manual: 2.B.4.e(5); 2.B.2.b(6); 2.B.6.c(10); 8.B.7</reference>
                  </Group>
                  <Group id="IR-2" hidden="true">
                        <title>Incident Response Training</title>
                        <reference>ISO/IEC 17799: 13.1.1</reference>
                        <reference>NIST 800-26: 14.1.4</reference>
                        <reference>GAO FISCAM: SP-3.4</reference>
                        <reference>DOD 8500.2: VIIR-1</reference>
                        <reference>DCID 6/3: 8.B.1.b(1)(f), 8.B.1.c(1)(e), 8.B.1.c(2)©</reference>
                  </Group>
                  <Group id="IR-3" hidden="true">
                        <title>Incident Response Testing</title>
                        <reference>ISO/IEC 17799: 14.1.5</reference>
                        <reference>DOD 8500.2: VIIR-1</reference>
                        <reference>DCID 6/3: 8.B.7</reference>
                  </Group>
                  <Group id="IR-4" hidden="true">
                        <title>Incident Handling</title>
                        <reference>ISO/IEC 17799: 6.1.6, 13.2.1, 13.2.2</reference>
                        <reference>NIST 800-26: 2.1.5, 14.1.1, 14.1.2, 14.1.6</reference>
                        <reference>GAO FISCAM: SP-3.4</reference>
                        <reference>DOD 8500.2: VIIR-1, E3.3.9</reference>
                        <reference>DCID 6/3: 8.B.7, 9.B.2.e</reference>
                  </Group>
                  <Group id="IR-5" hidden="true">
                        <title>Incident Monitoring</title>
                        <reference>NIST 800-26: 14.1.3</reference>
                        <reference>DOD 8500.2: VIIR-1</reference>
                        <reference>DCID 6/3: 8.B.7.a</reference>
                  </Group>
                  <Group id="IR-6" hidden="true">
                        <title>Incident Reporting</title>
                        <reference>ISO/IEC 17799: 6.1.6, 6.2.2, 6.2.3, 13.1.1, 13.1.2</reference>
                        <reference>NIST 800-26: 14.1.2, 14.1.3, 14.2.1, 14.2.2, 14.2.3</reference>
                        <reference>DOD 8500.2: VIIR-1, E3.3.9</reference>
                        <reference>DCID 6/3: 8.B.7</reference>
                  </Group>
                  <Group id="IR-7" hidden="true">
                        <title>Incident Response Assistance</title>
                        <reference>ISO/IEC 17799: 14.1.3</reference>
                        <reference>NIST 800-26: 8.1.1, 14.1.1</reference>
                        <reference>GAO FISCAM: SP-3.4</reference>
                        <reference>DCID 6/3: 8.B.7.c</reference>
                  </Group>
            </Group>
            <Group id="maintenance" hidden="true">
                  <title>Applicable 800-53 Maintenance</title>
                  <Group id="MA-1" hidden="true">
                        <title>System Maintenance Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 10.1.1, 15.1.1</reference>
                        <reference>NIST 800-26: 10</reference>
                        <reference>DOD 8500.2: PRMP-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a Manual: 2.B.4.e(5); 6.B.2.a(5)</reference>
                  </Group>
                  <Group id="MA-2" hidden="true">
                        <title>Periodic Maintenance</title>
                        <reference>ISO/IEC 17799: 9.2.4</reference>
                        <reference>NIST 800-26: 10.1.1, 10.1.3, 10.2.1</reference>
                        <reference>GAO FISCAM: SS-3.1</reference>
                        <reference>DCID 6/3: 6.B.2.a(5), 8.B.8.c</reference>
                  </Group>
                  <Group id="MA-3" hidden="true">
                        <title>Maintenance Tools</title>
                        <reference>NIST 800-26: 10.1.3, 11.2.4</reference>
                        <reference>DCID 6/3: 6.B.3.a(5), 8.B.8.c(4), 8.B.8.c(5)</reference>
                  </Group>
                  <Group id="MA-4" hidden="true">
                        <title>Remote Maintenance</title>
                        <reference>ISO/IEC 17799: 11.4.4</reference>
                        <reference>NIST 800-26: 10.1.1, 17.1.1</reference>
                        <reference>GAO FISCAM: SS-3.1</reference>
                        <reference>DOD 8500.2: EBRP-1</reference>
                        <reference>DCID 6/3: 8.B.8.d</reference>
                  </Group>
                  <Group id="MA-5" hidden="true">
                        <title>Maintenance Personnel</title>
                        <reference>ISO/IEC 17799: 6.2.3, 9.2.4</reference>
                        <reference>NIST 800-26: 10.1.1, 10.1.3</reference>
                        <reference>GAO FISCAM: SS-3.1</reference>
                        <reference>DOD 8500.2: PRMP-1</reference>
                        <reference>DCID 6/3: 8.B.8.a</reference>
                  </Group>
                  <Group id="MA-6" hidden="true">
                        <title>Timely Maintenance</title>
                        <reference>NIST 800-26: 9.1.2</reference>
                        <reference>GAO FISCAM: SC-1.2</reference>
                        <reference>DOD 8500.2: COMS-1, COSP-1</reference>
                        <reference>DCID 6/3: 6.B.2.a(5)</reference>
                  </Group>
            </Group>
            <Group id="media_protection" hidden="true">
                  <title>Applicable 800-53 Media Protection</title>
                  <Group id="MP-1" hidden="true">
                        <title>Media Protection Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 10.1.1, 10.7, 15.1.1, 15.1.3</reference>
                        <reference>NIST 800-26: 8.2</reference>
                        <reference>DOD 8500.2: PESP-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a Manual: 2.B.6.c(7); 8.B.2</reference>
                  </Group>
                  <Group id="MP-2" hidden="true">
                        <title>Media Access</title>
                        <reference>ISO/IEC 17799: 10.7.3</reference>
                        <reference>NIST 800-26: 8.2.1, 8.2.2, 8.2.3, 8.2.6, 8.2.7</reference>
                        <reference>DOD 8500.2: PEDI-1, PEPF-1</reference>
                        <reference>DCID 6/3: 2.B.9.b(4), 4.B.1.a(1), 4.B.1.a(7)</reference>
                  </Group>
                  <Group id="MP-3" hidden="true">
                        <title>Media Labeling</title>
                        <reference>ISO/IEC 17799: 7.2.2, 10.7.3, 10.8.2, 15.1.3</reference>
                        <reference>NIST 800-26: 8.2.5, 8.2.6, 10.2.9</reference>
                        <reference>DOD 8500.2: ECML-1</reference>
                        <reference>DCID 6/3: 2.B.9.b(4), 8.B.2.a, 8.B.2.c</reference>
                  </Group>
                  <Group id="MP-4" hidden="true">
                        <title>Media Storage</title>
                        <reference>ISO/IEC 17799: 10.7.1, 10.7.2, 10.7.3, 10.7.4, 15.1.3</reference>
                        <reference>NIST 800-26: 7.1.4, 8.2.1, 8.2.2, 8.2.9, 10.1.2</reference>
                        <reference>GAO FISCAM: AC-3.1</reference>
                        <reference>DOD 8500.2: PESS-1</reference>
                        <reference>DCID 6/3: 2.B.9.b(4), 4.B.1.a(7)</reference>
                  </Group>
                  <Group id="MP-5" hidden="true">
                        <title>Media Transport</title>
                        <reference>ISO/IEC 17799: 10.8.3</reference>
                        <reference>NIST 800-26: 8.2.2, 8.2.4</reference>
                        <reference>DCID 6/3: 2.B.9.b(4)</reference>
                  </Group>
                  <Group id="MP-6" hidden="true">
                        <title>Media Sanitization</title>
                        <reference>ISO/IEC 17799: 9.2.6, 10.7.1, 10.7.2</reference>
                        <reference>NIST 800-26: 3.2.11, 3.2.12, 3.2.13, 8.2.8, 8.2.9, 8.2.10</reference>
                        <reference>GAO FISCAM: AC-3.4</reference>
                        <reference>DOD 8500.2: PECS-1, PEDD-1</reference>
                        <reference>DCID 6/3: 8.B.5, 2.B.9.b(4), 8.B.5.a(4), 8.B.5.d, 8.B.5.e</reference>
                  </Group>
                  <Group id="MP-7" hidden="true">
                        <title>Media Destruction and Disposal</title>
                        <reference>ISO/IEC 17799: </reference>
                        <reference>NIST 800-26: </reference>
                        <reference>GAO FISCAM: </reference>
                        <reference>DOD 8500.2: </reference>
                        <reference>DCID 6/3: </reference>
                  </Group>
            </Group>
            <Group id="physical_and_environmental_protection" hidden="true">
                  <title>Applicable 800-53 Physical and Environmental Protection</title>
                  <Group id="PE-1" hidden="true">
                        <title>Physical and Environmental Protection Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 15.1.1</reference>
                        <reference>NIST 800-26: 7</reference>
                        <reference>DOD 8500.2: PETN-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 2.B.4.e(5); 8.D</reference>
                  </Group>
                  <Group id="PE-2" hidden="true">
                        <title>Physical Access Authorizations</title>
                        <reference>ISO/IEC 17799: 9.1.2, 9.1.6</reference>
                        <reference>NIST 800-26: 7.1.1, 7.1.2</reference>
                        <reference>GAO FISCAM: AC-3.1</reference>
                        <reference>DOD 8500.2: PECF-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(1), 8.E</reference>
                  </Group>
                  <Group id="PE-3" hidden="true">
                        <title>Physical Access Control</title>
                        <reference>ISO/IEC 17799: 9.1.1, 9.1.2, 9.1.5, 9.1.6, 10.5.1</reference>
                        <reference>NIST 800-26: 7.1.1, 7.1.2, 7.1.5, 7.1.6, 7.1.8</reference>
                        <reference>GAO FISCAM: AC-3.1</reference>
                        <reference>DOD 8500.2: PEPF-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(1), 8.D.2, 8.E</reference>
                  </Group>
                  <Group id="PE-4" hidden="true">
                        <title>Access Control for Transmission Medium</title>
                        <reference>ISO/IEC 17799: 9.2.3</reference>
                        <reference>NIST 800-26: 7.2.2, 16.2.9</reference>
                        <reference>DCID 6/3: 8.D.2, 4.B.1.a(8)</reference>
                  </Group>
                  <Group id="PE-5" hidden="true">
                        <title>Access Control for Display Medium</title>
                        <reference>ISO/IEC 17799: 9.1.2, 11.3.3</reference>
                        <reference>NIST 800-26: 7.2.1</reference>
                        <reference>DOD 8500.2: PEDI-1, PEPF-1</reference>
                        <reference>DCID 6/3: 8.C.2.a, 8.D.2</reference>
                  </Group>
                  <Group id="PE-6" hidden="true">
                        <title>Monitoring Physical Access</title>
                        <reference>ISO/IEC 17799: 9.1.2</reference>
                        <reference>NIST 800-26: 7.1.9</reference>
                        <reference>GAO FISCAM: AC-4</reference>
                        <reference>DOD 8500.2: PEPF-2</reference>
                        <reference>DCID 6/3: 4.B.1.a(1), 8.C.2.a, 8.D.2</reference>
                  </Group>
                  <Group id="PE-7" hidden="true">
                        <title>Visitor Control</title>
                        <reference>ISO/IEC 17799: 9.1.2</reference>
                        <reference>NIST 800-26: 7.1.7, 7.1.11</reference>
                        <reference>GAO FISCAM: AC-3.1</reference>
                        <reference>DOD 8500.2: PEVC-1</reference>
                        <reference>DCID 6/3: 8.C.2.a, 8.D.2, 8.E</reference>
                  </Group>
                  <Group id="PE-8" hidden="true">
                        <title>Access Records</title>
                        <reference>ISO/IEC 17799: 9.1.2</reference>
                        <reference>NIST 800-26: 7.1.9</reference>
                        <reference>GAO FISCAM: AC-4</reference>
                        <reference>DOD 8500.2: PEPF-2, PEVC-1</reference>
                        <reference>DCID 6/3: 8.C.2.a, 8.D.2, 8.E</reference>
                  </Group>
                  <Group id="PE-9" hidden="true">
                        <title>Power Equipment and Power Cabling</title>
                        <reference>ISO/IEC 17799: 9.2.2, 9.2.3</reference>
                        <reference>NIST 800-26: 7.1.16</reference>
                        <reference>GAO FISCAM: SC-2.2</reference>
                        <reference>DCID 6/3: 8.D.2</reference>
                  </Group>
                  <Group id="PE-10" hidden="true">
                        <title>Emergency Shutoff</title>
                        <reference>ISO/IEC 17799: 9.2.2</reference>
                        <reference>DOD 8500.2: PEMS-1</reference>
                        <reference>DCID 6/3: 8.D.2</reference>
                  </Group>
                  <Group id="PE-11" hidden="true">
                        <title>Emergency Power</title>
                        <reference>ISO/IEC 17799: 9.2.2</reference>
                        <reference>NIST 800-26: 7.1.18</reference>
                        <reference>GAO FISCAM: SC-2.2</reference>
                        <reference>DOD 8500.2: COPS-1, COPS-2, COPS-3</reference>
                        <reference>DCID 6/3: 6.B.2.a(6), 6.B.2.a(7)</reference>
                  </Group>
                  <Group id="PE-12" hidden="true">
                        <title>Emergency Lighting</title>
                        <reference>ISO/IEC 17799: 9.2.2</reference>
                        <reference>DOD 8500.2: PEEL-1</reference>
                        <reference>DCID 6/3: 8.D.2</reference>
                  </Group>
                  <Group id="PE-13" hidden="true">
                        <title>Fire Protection</title>
                        <reference>ISO/IEC 17799: 9.1.4, 9.2.1</reference>
                        <reference>NIST 800-26: 7.1.12</reference>
                        <reference>GAO FISCAM: SC-2.2</reference>
                        <reference>DOD 8500.2: PEFD-1, PEFS-1</reference>
                        <reference>DCID 6/3: 8.C.2.a, 8.D.2</reference>
                  </Group>
                  <Group id="PE-14" hidden="true">
                        <title>Temperature and Humidity Controls</title>
                        <reference>ISO/IEC 17799: 9.2.1, 10.5.1, 10.7.1</reference>
                        <reference>NIST 800-26: 7.1.14, 7.1.15</reference>
                        <reference>GAO FISCAM: SC-2.2</reference>
                        <reference>DOD 8500.2: PEHC-1, PETC-1</reference>
                        <reference>DCID 6/3: 8.D.2</reference>
                  </Group>
                  <Group id="PE-15" hidden="true">
                        <title>Water Damage Protection</title>
                        <reference>ISO/IEC 17799: 9.1.4, 9.2.1</reference>
                        <reference>NIST 800-26: 7.1.17</reference>
                        <reference>GAO FISCAM: SC-2.2</reference>
                        <reference>DCID 6/3: 8.C.2.a, 8.D.2</reference>
                  </Group>
                  <Group id="PE-16" hidden="true">
                        <title>Delivery and Removal</title>
                        <reference>ISO/IEC 17799: 9.1.6, 9.2.7, 10.7.1</reference>
                        <reference>NIST 800-26: 7.1.3</reference>
                        <reference>GAO FISCAM: AC-3.1</reference>
                        <reference>DCID 6/3: 8.B.5.e</reference>
                  </Group>
                  <Group id="PE-17" hidden="true">
                        <title>Alternate Work Site</title>
                        <reference>ISO/IEC 17799: 11.7.2</reference>
                        <reference>DOD 8500.2: EBRU-1</reference>
                  </Group>
                  <Group id="PE-18" hidden="true">
                        <title>Location of Information System Components</title>
                        <reference>ISO/IEC 17799: 9.2.1</reference>
                  </Group>
                  <Group id="PE-19" hidden="true">
                        <title>Information Leakage</title>
                  </Group>
            </Group>
            <Group id="planning" hidden="true">
                  <title>Applicable 800-53 Planning</title>
                  <Group id="PL-1" hidden="true">
                        <title>Security Planning Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 6.1, 15.1.1</reference>
                        <reference>NIST 800-26: 5</reference>
                        <reference>DOD 8500.2: DCAR-1, E3.4.6</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 2.B.4.e(5)</reference>
                  </Group>
                  <Group id="PL-2" hidden="true">
                        <title>System Security Plan</title>
                        <reference>ISO/IEC 17799: 6.1</reference>
                        <reference>NIST 800-26: 4.1.5, 5.1.1, 5.1.2, 12.2.1</reference>
                        <reference>GAO FISCAM: SP-2.1</reference>
                        <reference>DOD 8500.2: DCSD-1</reference>
                        <reference>DCID 6/3: 1.F.6, 2.B.6.c(3), 2.B.7.c(5), 9.E.2.a(1)(d), 9.F.2.a, Appendix C</reference>
                  </Group>
                  <Group id="PL-3" hidden="true">
                        <title>System Security Plan Update</title>
                        <reference>ISO/IEC 17799: 6.1</reference>
                        <reference>NIST 800-26: 3.2.10, 5.2.1</reference>
                        <reference>GAO FISCAM: SP-2.1</reference>
                        <reference>DOD 8500.2: 5.7.5</reference>
                        <reference>DCID 6/3: 2.B.7.c(5)</reference>
                  </Group>
                  <Group id="PL-4" hidden="true">
                        <title>Rules of Behavior</title>
                        <reference>ISO/IEC 17799: 7.1.3, 8.1.3, 15.1.5</reference>
                        <reference>NIST 800-26: 4.1.3, 13.1.1</reference>
                        <reference>DOD 8500.2: PRRB-1</reference>
                        <reference>DCID 6/3: 2.B.9.b</reference>
                  </Group>
                  <Group id="PL-5" hidden="true">
                        <title>Privacy Impact Assessment</title>
                        <reference>ISO/IEC 17799: 15.1.4</reference>
                        <reference>DCID 6/3: DCID: B.3.a; Manual: 8.B.9</reference>
                  </Group>
                  <Group id="PL-6" hidden="true">
                        <title>Security-Related Activity Planning</title>
                        <reference>ISO/IEC 17799: 15.3.1</reference>
                  </Group>
            </Group>
            <Group id="personnel_security" hidden="true">
                  <title>Applicable 800-53 Personnel Security</title>
                  <Group id="PS-1" hidden="true">
                        <title>Personnel Security Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 8.1.1, 15.1.1</reference>
                        <reference>NIST 800-26: 6</reference>
                        <reference>DOD 8500.2: PRRB-1, DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 2.B.4.e(5); 8.E</reference>
                  </Group>
                  <Group id="PS-2" hidden="true">
                        <title>Position Categorization</title>
                        <reference>ISO/IEC 17799: 8.1.2</reference>
                        <reference>NIST 800-26: 6.1.1, 6.1.2</reference>
                        <reference>GAO FISCAM: SD-1.2</reference>
                        <reference>DCID 6/3: 8.E</reference>
                  </Group>
                  <Group id="PS-3" hidden="true">
                        <title>Personnel Screening</title>
                        <reference>ISO/IEC 17799: 8.1.2</reference>
                        <reference>NIST 800-26: 6.2.1, 6.2.3</reference>
                        <reference>GAO FISCAM: SP-4.1</reference>
                        <reference>DOD 8500.2: PRAS-1</reference>
                        <reference>DCID 6/3: 2.B.7.c(2), 2.B.8.b(5), 8.E</reference>
                  </Group>
                  <Group id="PS-4" hidden="true">
                        <title>Personnel Termination</title>
                        <reference>ISO/IEC 17799: 8.1.3, 8.3, 11.2.1</reference>
                        <reference>NIST 800-26: 6.1.7</reference>
                        <reference>GAO FISCAM: SP-4.1</reference>
                        <reference>DOD 8500.2: 5.12.7</reference>
                        <reference>DCID 6/3: 2.B.9.b(6), 4.B.2.a(3)(e), 8.E</reference>
                  </Group>
                  <Group id="PS-5" hidden="true">
                        <title>Personnel Transfer</title>
                        <reference>ISO/IEC 17799: 8.3.1, 8.3.3, 11.2.1</reference>
                        <reference>NIST 800-26: 6.1.7</reference>
                        <reference>GAO FISCAM: SP-4.1</reference>
                        <reference>DOD 8500.2: 5.12.7</reference>
                        <reference>DCID 6/3: 2.B.9.b(6)</reference>
                  </Group>
                  <Group id="PS-6" hidden="true">
                        <title>Access Agreements</title>
                        <reference>ISO/IEC 17799: 6.1.5, 8.1.3</reference>
                        <reference>NIST 800-26: 6.1.5, 6.2.2</reference>
                        <reference>GAO FISCAM: SP-4.1</reference>
                        <reference>DOD 8500.2: PRRB-1</reference>
                        <reference>DCID 6/3: 1.E.2, 8.E</reference>
                  </Group>
                  <Group id="PS-7" hidden="true">
                        <title>Third-Party Personnel Security</title>
                        <reference>ISO/IEC 17799: 6.2.1, 6.2.3, 8.1.1, 8.1.2, 8.1.3, 8.2.1, 8.2.2, 11.2.1</reference>
                        <reference>GAO FISCAM: SP-4.1</reference>
                        <reference>DOD 8500.2: 5.7.10</reference>
                        <reference>DCID 6/3: 1.A.1, 8.D, 8.E</reference>
                  </Group>
                  <Group id="PS-8" hidden="true">
                        <title>Personnel Sanctions</title>
                        <reference>ISO/IEC 17799: 8.2.3, 11.2.1</reference>
                        <reference>NIST 800-26: 6.1.5</reference>
                        <reference>DOD 8500.2: PRRB-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(3)(e), 8.E</reference>
                  </Group>
            </Group>
            <Group id="risk_assessment" hidden="true">
                  <title>Applicable 800-53 Risk Assessment</title>
                  <Group id="RA-1" hidden="true">
                        <title>Risk Assessment Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 4.1, 15.1.1</reference>
                        <reference>NIST 800-26: 1</reference>
                        <reference>DOD 8500.2: DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.3.a, Manual: 2.B.4.e(5)</reference>
                  </Group>
                  <Group id="RA-2" hidden="true">
                        <title>Security Categorization</title>
                        <reference>ISO/IEC 17799: 7.2.1</reference>
                        <reference>NIST 800-26: 1.1.3, 3.1.1</reference>
                        <reference>GAO FISCAM: SP-1, AC-1.1, AC-1.2</reference>
                        <reference>DOD 8500.2: E3.4.2</reference>
                        <reference>DCID 6/3: 3.C, 3.D, 9.E.2.a(1)(a), 9.E.2.a(1)(d)</reference>
                  </Group>
                  <Group id="RA-3" hidden="true">
                        <title>Risk Assessment</title>
                        <reference>ISO/IEC 17799: 4, 4.1, 4.2, 6.2.1, 10.10.2, 10.10.5, 12.5.1, 12.6.1, 14.1.1, 14.1.2</reference>
                        <reference>NIST 800-26: 1.1.2, 1.1.4, 1.1.5, 1.1.6, 1.2.1, 1.2.2, 1.2.3, 3.1.7, 3.1.8, 4.1.7, 7.1.13, 7.1.19, 12.2.4</reference>
                        <reference>GAO FISCAM: SP-1</reference>
                        <reference>DOD 8500.2: DCDS-1, DCII-1, E3.3.10</reference>
                        <reference>DCID 6/3: 9.B</reference>
                  </Group>
                  <Group id="RA-4" hidden="true">
                        <title>Risk Assessment Update</title>
                        <reference>ISO/IEC 17799: 4.1</reference>
                        <reference>NIST 800-26: 1.1.2, 4.1.2</reference>
                        <reference>GAO FISCAM: SP-1</reference>
                        <reference>DOD 8500.2: DCAR-1, DCII-1</reference>
                        <reference>DCID 6/3: 9.B.4.f, 9.D.1.d</reference>
                  </Group>
                  <Group id="RA-5" hidden="true">
                        <title>Vulnerability Scanning</title>
                        <reference>ISO/IEC 17799: 12.6.1</reference>
                        <reference>NIST 800-26: 10.3.2, 14.2.1</reference>
                        <reference>DOD 8500.2: ECMT-1, VIVM-1</reference>
                        <reference>DCID 6/3: 4.B.3.a(8)(b), 4.B.3.b(6)(b), 9.B.4.e</reference>
                  </Group>
            </Group>
            <Group id="system_and_services_acquisition" hidden="true">
                  <title>Applicable 800-53 System and Services Acquisition</title>
                  <Group id="SA-1" hidden="true">
                        <title>System and Services Acquisition Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 12.1, 15.1.1</reference>
                        <reference>NIST 800-26: 3</reference>
                        <reference>DOD 8500.2: DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 2.B.4.e(5)</reference>
                  </Group>
                  <Group id="SA-2" hidden="true">
                        <title>Allocation of Resources</title>
                        <reference>ISO/IEC 17799: 10.3.1</reference>
                        <reference>NIST 800-26: 3.1.2, 3.1.3, 3.1.5, 5.1.3</reference>
                        <reference>DOD 8500.2: DCPB-1, E3.3.4</reference>
                        <reference>DCID 6/3: DCID: C.2.a, Manual: 2.B.4.e(8)</reference>
                  </Group>
                  <Group id="SA-3" hidden="true">
                        <title>Life Cycle Support</title>
                        <reference>NIST 800-26: 3.1</reference>
                        <reference>DOD 8500.2: 5.8.1</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 9.E.2</reference>
                  </Group>
                  <Group id="SA-4" hidden="true">
                        <title>Acquisitions</title>
                        <reference>ISO/IEC 17799: 12.1.1</reference>
                        <reference>NIST 800-26: 3.1.6, 3.1.7, 3.1.10, 3.1.11, 3.1.12</reference>
                        <reference>DOD 8500.2: DCAS-1, DCDS-1, DCIT-1, DCMC-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a; C.2.a, Manual: 9.B.4</reference>
                  </Group>
                  <Group id="SA-5" hidden="true">
                        <title>Information System Documentation</title>
                        <reference>ISO/IEC 17799: 10.7.4</reference>
                        <reference>NIST 800-26: 3.2.3, 3.2.4, 3.2.8, 12.1.1, 12.1.2, 12.1.3, 12.1.6, 12.1.7</reference>
                        <reference>GAO FISCAM: CC-2.1</reference>
                        <reference>DOD 8500.2: DCCS-1, DCHW-1, DCID-1, DCSD-1, DCSW-1, ECND-1, DCFA-1</reference>
                        <reference>DCID 6/3: 4.B.2.b(2), 4.B.2.b(3), 4.B.4.b(4), 9.C.3</reference>
                  </Group>
                  <Group id="SA-6" hidden="true">
                        <title>Software Usage Restrictions</title>
                        <reference>ISO/IEC 17799: 15.1.2</reference>
                        <reference>NIST 800-26: 10.2.10, 10.2.13</reference>
                        <reference>GAO FISCAM: SS-3.2, SP-2.1</reference>
                        <reference>DOD 8500.2: DCPD-1</reference>
                        <reference>DCID 6/3: 2.B.9.b(11)</reference>
                  </Group>
                  <Group id="SA-7" hidden="true">
                        <title>User Installed Software</title>
                        <reference>ISO/IEC 17799: 15.1.2</reference>
                        <reference>NIST 800-26: 10.2.10</reference>
                        <reference>GAO FISCAM: SS-3.2</reference>
                        <reference>DCID 6/3: 2.B.9.b(11)</reference>
                  </Group>
                  <Group id="SA-8" hidden="true">
                        <title>Security Engineering Principles</title>
                        <reference>ISO/IEC 17799: 12.1</reference>
                        <reference>NIST 800-26: 3.2.1</reference>
                        <reference>DOD 8500.2: DCBP-1, DCCS-1, E3.4.4</reference>
                        <reference>DCID 6/3: 1.H.1</reference>
                  </Group>
                  <Group id="SA-9" hidden="true">
                        <title>Outsourced Information System Services</title>
                        <reference>ISO/IEC 17799: 6.2.1, 6.2.3, 10.2.1, 10.2.2, 10.6.2</reference>
                        <reference>NIST 800-26: 12.2.3</reference>
                        <reference>DOD 8500.2: DCDS-1, DCID-1 DCIT-1, DCPP-1</reference>
                        <reference>DCID 6/3: 1.B.1, 8.C.2, 8.E</reference>
                  </Group>
                  <Group id="SA-10" hidden="true">
                        <title>Developer Configuration Management</title>
                        <reference>ISO/IEC 17799: 12.5.1, 12.5.2</reference>
                        <reference>GAO FISCAM: SS-3.1, CC-3</reference>
                        <reference>DCID 6/3: 4.B.4.b(4), 8.C.2.a</reference>
                  </Group>
                  <Group id="SA-11" hidden="true">
                        <title>Developer Security Testing</title>
                        <reference>ISO/IEC 17799: 12.5.1, 12.5.2</reference>
                        <reference>NIST 800-26: 3.2.1, 3.2.2, 10.2.5, 12.1.5</reference>
                        <reference>GAO FISCAM: SS-3.1, CC-2.1</reference>
                        <reference>DOD 8500.2: E3.4.4</reference>
                        <reference>DCID 6/3: 4.B.4.b(4)</reference>
                  </Group>
            </Group>
            <Group id="system_and_communications_protection" hidden="true">
                  <title>Applicable 800-53 System and Communication Protection</title>
                  <Group id="SC-1" hidden="true">
                        <title>System and Communications Protection Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 10.8.1, 15.1.1</reference>
                        <reference>DOD 8500.2: DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 2.B.4.e(5)</reference>
                  </Group>
                  <Group id="SC-2" hidden="true">
                        <title>Application Partitioning</title>
                        <reference>ISO/IEC 17799: 11.4.5</reference>
                        <reference>DOD 8500.2: DCPA-1</reference>
                        <reference>DCID 6/3: 4.B.3.b(6)(a), 4.B.4.b(8), 5.B.3.b(2)</reference>
                  </Group>
                  <Group id="SC-3" hidden="true">
                        <title>Security Function Isolation</title>
                        <reference>ISO/IEC 17799: 11.4.5</reference>
                        <reference>DOD 8500.2: DCSP-1</reference>
                        <reference>DCID 6/3: 4.B.3.b(6)(a), 4.B.4.b(8), 5.B.3.b(1), 5.B.3.b(2)</reference>
                  </Group>
                  <Group id="SC-4" hidden="true">
                        <title>Information Remnants</title>
                        <reference>ISO/IEC 17799: 10.8.1</reference>
                        <reference>GAO FISCAM: AC-3.4</reference>
                        <reference>DOD 8500.2: ECRC-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(14)</reference>
                  </Group>
                  <Group id="SC-5" hidden="true">
                        <title>Denial of Service Protection</title>
                        <reference>ISO/IEC 17799: 10.8.4, 13.2.1</reference>
                        <reference>DCID 6/3: 6.B.3.a(6)</reference>
                  </Group>
                  <Group id="SC-6" hidden="true">
                        <title>Resource Priority</title>
                        <reference>DCID 6/3: 6.B.3.a(11)</reference>
                  </Group>
                  <Group id="SC-7" hidden="true">
                        <title>Boundary Protection</title>
                        <reference>ISO/IEC 17799: 11.4.6</reference>
                        <reference>NIST 800-26: 16.2.2, 16.2.7, 16.2.9, 16.2.10, 16.2.11, 16.2.14</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: COEB-1, EBBD-1, ECIM-1, ECVI-1</reference>
                        <reference>DCID 6/3: 4.B.4.a(27), 5.B.3.a(11)(b), 7.A.3, 7.B, 7.C, 7.D</reference>
                  </Group>
                  <Group id="SC-8" hidden="true">
                        <title>Transmission Integrity</title>
                        <reference>ISO/IEC 17799: 10.6.1, 10.8.1, 10.9.1</reference>
                        <reference>NIST 800-26: 11.2.1, 11.2.4, 11.2.9, 16.2.14</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECTM-1</reference>
                        <reference>DCID 6/3: 5.B.3.a(11)</reference>
                  </Group>
                  <Group id="SC-9" hidden="true">
                        <title>Transmission Confidentiality</title>
                        <reference>ISO/IEC 17799: 10.6.1, 10.8.1, 10.9.1</reference>
                        <reference>DOD 8500.2: ECCT-1</reference>
                        <reference>DCID 6/3: 4.B.1.a(8)(a)</reference>
                  </Group>
                  <Group id="SC-10" hidden="true">
                        <title>Network Disconnect</title>
                        <reference>ISO/IEC 17799: 11.5.6</reference>
                        <reference>NIST 800-26: 16.2.6</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DCID 6/3: 4.B.2.a(17)</reference>
                  </Group>
                  <Group id="SC-11" hidden="true">
                        <title>Trusted Path</title>
                        <reference>ISO/IEC 17799: 10.9.2</reference>
                        <reference>NIST 800-26: 16.2.7</reference>
                        <reference>DCID 6/3: 4.B.4.a(14)</reference>
                  </Group>
                  <Group id="SC-12" hidden="true">
                        <title>Cryptographic Key Establishment and Mgmt.</title>
                        <reference>ISO/IEC 17799: 12.3.1, 12.3.2</reference>
                        <reference>NIST 800-26: 16.1.7, 16.1.8</reference>
                        <reference>DOD 8500.2: IAKM-1</reference>
                        <reference>DCID 6/3: 1.G</reference>
                  </Group>
                  <Group id="SC-13" hidden="true">
                        <title>Use of Validated Cryptography</title>
                        <reference>NIST 800-26: 16.1.7, 16.1.8</reference>
                        <reference>DOD 8500.2: IAKM-1, IATS-1</reference>
                        <reference>DCID 6/3: 1.G.1</reference>
                  </Group>
                  <Group id="SC-14" hidden="true">
                        <title>Public Access Protections</title>
                        <reference>ISO/IEC 17799: 10.7.4, 10.9.3</reference>
                        <reference>DOD 8500.2: EBPW-1</reference>
                  </Group>
                  <Group id="SC-15" hidden="true">
                        <title>Collaborative Computing</title>
                        <reference>DOD 8500.2: ECVI-1</reference>
                        <reference>DCID 6/3: 7.G</reference>
                  </Group>
                  <Group id="SC-16" hidden="true">
                        <title>Transmission of Security Parameters</title>
                        <reference>ISO/IEC 17799: 7.2.2, 10.8.2, 10.9.2</reference>
                        <reference>NIST 800-26: 16.1.6</reference>
                        <reference>GAO FISCAM: AC-3.2</reference>
                        <reference>DOD 8500.2: ECTM-2</reference>
                        <reference>DCID 6/3: 4.B.1.a(3)</reference>
                  </Group>
                  <Group id="SC-17" hidden="true">
                        <title>Public Key Infrastructure Certificates</title>
                        <reference>ISO/IEC 17799: 12.3.2</reference>
                        <reference>DOD 8500.2: IAKM-1</reference>
                        <reference>DCID 6/3: 2.B.4.e(5), 4.B.3.a(11)</reference>
                  </Group>
                  <Group id="SC-18" hidden="true">
                        <title>Mobile Code</title>
                        <reference>ISO/IEC 17799: 10.4.1, 10.4.2</reference>
                        <reference>DOD 8500.2: DCMC-1</reference>
                        <reference>DCID 6/3: 2.B.4.e(5), 7.E</reference>
                  </Group>
                  <Group id="SC-19" hidden="true">
                        <title>Voice Over Internet Protocol</title>
                        <reference>DOD 8500.2: ECVI-1</reference>
                        <reference>DCID 6/3: DCID 6/3 2.B.4.d, 9.D.1.a</reference>
                  </Group>
                  <Group id="SC-20" hidden="true">
                        <title>Secure Name Address Resolution Service (Authoritative Source)</title>
                  </Group>
                  <Group id="SC-21" hidden="true">
                        <title>Secure Name Address Resolution Service (Resolution)</title>
                  </Group>
                  <Group id="SC-22" hidden="true">
                        <title>Architecture and Provisioning for Name/Address Resolution Service</title>
                  </Group>
                  <Group id="SC-23" hidden="true">
                        <title>Session Authenticity</title>
                  </Group>
            </Group>
            <Group id="system_and_information_integrity" hidden="true">
                  <title>Applicable 800-53 System and Information Integrity</title>
                  <Group id="SI-1" hidden="true">
                        <title>System and Information Integrity Policy and Procedures</title>
                        <reference>ISO/IEC 17799: 15.1.1</reference>
                        <reference>NIST 800-26: 11</reference>
                        <reference>DOD 8500.2: DCAR-1</reference>
                        <reference>DCID 6/3: DCID: B.2.a, Manual: 2.B.4.e(5), 5.B.1.b(1), 5.B.2.a(5)(a)(1)</reference>
                  </Group>
                  <Group id="SI-2" hidden="true">
                        <title>Flaw Remediation</title>
                        <reference>ISO/IEC 17799: 10.10.5, 12.4.1, 12.5.1, 12.5.2, 12.6.1</reference>
                        <reference>NIST 800-26: 10.3.2, 11.1.1, 11.1.2, 11.2.2, 11.2.7</reference>
                        <reference>GAO FISCAM: SS-2.2</reference>
                        <reference>DOD 8500.2: DCSQ-1, DCCT-1, VIVM-1</reference>
                        <reference>DCID 6/3: 5.B.2.a(5)(a)(3), 6.B.2.a(5)</reference>
                  </Group>
                  <Group id="SI-3" hidden="true">
                        <title>Malicious Code Protection</title>
                        <reference>ISO/IEC 17799: 10.4.1</reference>
                        <reference>NIST 800-26: 11.1.1, 11.1.2</reference>
                        <reference>DOD 8500.2: ECVP-1, VIVM-1</reference>
                        <reference>DCID 6/3: 5.B.1.a(4), 7.B.4.b(1)</reference>
                  </Group>
                  <Group id="SI-4" hidden="true">
                        <title>Information System Monitoring Tools and Techniques</title>
                        <reference>ISO/IEC 17799: 10.6.2, 10.10.1, 10.10.2, 10.10.4</reference>
                        <reference>NIST 800-26: 11.2.5, 11.2.6</reference>
                        <reference>DOD 8500.2: EBBD-1, EBVC-1, ECID-1</reference>
                        <reference>DCID 6/3: 4.B.2.a(5)(b), 4.B.3.a(8)(b), 6.B.3.a(8)</reference>
                  </Group>
                  <Group id="SI-5" hidden="true">
                        <title>Security Alerts and Advisories</title>
                        <reference>ISO/IEC 17799: 6.1.7, 10.4.1</reference>
                        <reference>NIST 800-26: 14.1.1, 14.1.2, 14.1.5</reference>
                        <reference>GAO FISCAM: SP-3.4</reference>
                        <reference>DOD 8500.2: VIVM-1</reference>
                        <reference>DCID 6/3: 8.B.7</reference>
                  </Group>
                  <Group id="SI-6" hidden="true">
                        <title>Security Functionality Verification</title>
                        <reference>NIST 800-26: 11.2.1, 11.2.2</reference>
                        <reference>GAO FISCAM: SS-2.2</reference>
                        <reference>DOD 8500.2: DCSS-1</reference>
                        <reference>DCID 6/3: 4.B.1.c(2), 5.B.2.b(2)</reference>
                  </Group>
                  <Group id="SI-7" hidden="true">
                        <title>Software and Information Integrity</title>
                        <reference>ISO/IEC 17799: 12.2.1, 12.2.2, 12.2.4</reference>
                        <reference>NIST 800-26: 11.2.1, 11.2.4</reference>
                        <reference>DOD 8500.2: ECSD-2</reference>
                        <reference>DCID 6/3: 4.B.1.c(2), 5.B.1.a(3), 5.B.2.a(6)</reference>
                  </Group>
                  <Group id="SI-8" hidden="true">
                        <title>Spam Protection</title>
                        <reference>DCID 6/3: 5.B.1.a(4)</reference>
                  </Group>
                  <Group id="SI-9" hidden="true">
                        <title>Information Input Restrictions</title>
                        <reference>ISO/IEC 17799: 12.2.1, 12.2.2</reference>
                        <reference>GAO FISCAM: SD-1</reference>
                        <reference>DCID 6/3: 2.B.9.b(11)</reference>
                  </Group>
                  <Group id="SI-10" hidden="true">
                        <title>Information Accuracy, Completeness, Validity, and Authenticity</title>
                        <reference>ISO/IEC 17799: 10.7.3, 12.2.1, 12.2.2</reference>
                        <reference>DCID 6/3: 7.B.2.h, 2.B.4.d</reference>
                  </Group>
                  <Group id="SI-11" hidden="true">
                        <title>Error Handling</title>
                        <reference>ISO/IEC 17799: 12.2.1, 12.2.2, 12.2.3, 12.2.4</reference>
                        <reference>DCID 6/3: 2.B.4.d</reference>
                  </Group>
                  <Group id="SI-12" hidden="true">
                        <title>Information Output Handling and Retention</title>
                        <reference>ISO/IEC 17799: 10.7.3, 12.2.4</reference>
                        <reference>DOD 8500.2: PESP-1</reference>
                        <reference>DCID 6/3: 2.B.4.d, 8.B.9, 8.G</reference>
                  </Group>
            </Group>
      </Group>
      <!-- ==================================================================================================== -->
      <!-- =====================================  FDCC SECURITY GUIDANCE  ===================================== -->
      <!-- ==================================================================================================== -->
      <!--                                                                                                      -->
      <!-- The following groups represent the collection of FDCC guidance for Microsoft Windows Vista Firewall. -->
      <!-- For specific recommendations regarding which rules to enable and which values to use, please refer   -->
      <!-- to the XCCDF profiles above.                                                                         -->
      <!--                                                                                                      -->
      <!-- **************************************************************************************************** -->
      <!-- ***  1 - Introduction                                                                            *** -->
      <!-- **************************************************************************************************** -->
      <Group id="introduction">
            <title>Introduction</title>
            <description>This guide has been created to assist federal agencies in effectively securing systems with Microsoft Windows Vista Firewall based on OMB Federal Desktop Core Configuration recommendations.<xhtml:br/><xhtml:br/>Under the direction of OMB and in collaboration with DHS, DISA, NSA, USAF, and Microsoft, NIST has provided the following baseline to help agencies test, implement, and deploy the Microsoft Windows Vista Firewall Federal Desktop Core Configuration (FDCC) baseline. The Federal Desktop Core Configuration (FDCC) is an OMB-mandated security configuration.<xhtml:br/><xhtml:br/>Please refer to the FDCC home page for additional information. http://fdcc.nist.gov</description>
      </Group>
      <!-- **************************************************************************************************** -->
      <!-- ***  2 - FDCC Security Settings                                                                  *** -->
      <!-- **************************************************************************************************** -->
      <!--                                                                                                      -->
      <!-- none                                                                                                 -->
      <!--                                                                                                      -->
      <!-- **************************************************************************************************** -->
      <!-- ***  3 - FDCC Other Settings                                                                     *** -->
      <!-- **************************************************************************************************** -->
      <Group id="fdcc_other_settings">
            <title>FDCC Other Settings</title>
            <description>FDCC has identified the following additional controls that must be checked in order to verify compliance.</description>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <!-- ~~~  Outbound Rules                                                                            -->
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <Group id="outbound_rules">
                  <title>Outbound Rules</title>
                  <description>todo</description>
                  <Rule id="ipv6_block_protocols_41" selected="false" weight="10.0" role="unchecked">
                        <title>IPv6 Block of Protocols 41</title>
                        <description>todo - description needed</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Outbound Rules</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2865-4</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1795</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6491"/>
                        </check>
                  </Rule>
                  <Rule id="ipv6_block_udp_3544" selected="false" weight="10.0" role="unchecked">
                        <title>IPv6 Block of UDP 3544</title>
                        <description>todo - description needed</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Outbound Rules</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3508-9</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1293</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6492"/>
                        </check>
                  </Rule>
            </Group>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <!-- ~~~  Domain Profile                                                                            -->
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <Group id="windows_firewall_with_advanced_security_domain_profile">
                  <title>Windows Firewall with Advanced Security - Domain Profile</title>
                  <description>The Domain Profile applies when a computer is connected to a network and authenticates to a domain controller in the domain to which the computer belongs.</description>
                  <Value id="domain_profile_log_dropped_packets_var" operator="equals" type="number">
                        <title>domain_profile_log_dropped_packets_var</title>
                        <description>todo</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="domain_profile_logged_successful_connections_var" operator="equals" type="number">
                        <title>domain_profile_logged_successful_connections_var</title>
                        <description>todo</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="domain_profile_name_var" operator="pattern match" type="string">
                        <title>domain_profile_name_var</title>
                        <description>todo</description>
                        <value>^%windir%\\system32\\logfiles\\firewall\\[^\.][^\\]*$</value>
                        <value selector="firewall_dir">^%windir%\\system32\\logfiles\\firewall\\[^\.][^\\]*$</value>
                  </Value>
                  <Value id="domain_profile_size_limit_var" operator="equals" type="number">
                        <title>domain_profile_size_limit_var</title>
                        <description>todo</description>
                        <value>0</value>
                        <value selector="16384_kb">16384</value>
                  </Value>
                  <Value id="domain_profile_display_notification_var" operator="equals" type="number">
                        <title>Display a Notification</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>0</value>
                        <value selector="yes">0</value>
                        <value selector="no">1</value>
                  </Value>
                  <Value id="domain_profile_apply_local_connection_security_rules_var" operator="equals" type="number">
                        <title>Apply Local Connection Security Rules</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>0</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="domain_profile_apply_local_firewall_rules_var" operator="equals" type="number">
                        <title>Apply Local Firewall Rules</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>0</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="domain_profile_allow_unicast_response_var" operator="equals" type="number">
                        <title>Allow Unicast Response</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>1</value>
                        <value selector="yes">0</value>
                        <value selector="no">1</value>
                  </Value>
                  <Value id="domain_profile_firewall_state_var" operator="equals" type="number">
                        <title>Firewall state</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>1</value>
                        <value selector="off">1</value>
                        <value selector="on">1</value>
                  </Value>
                  <Value id="domain_profile_inbound_connections_var" operator="equals" type="number">
                        <title>Inbound Connections</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>1</value>
                        <value selector="allow">0</value>
                        <value selector="block">1</value>
                  </Value>
                  <Value id="domain_profile_outbound_connections_var" operator="equals" type="number">
                        <title>Outbound Connections</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <value>0</value>
                        <value selector="allow">0</value>
                        <value selector="block">1</value>
                  </Value>
                  <Rule id="domain_profile_log_dropped_packets" selected="false" weight="10.0">
                        <title>Log Dropped Packets</title>
                        <description>The "Log Dropped Packets" option for the Windows Firewall should be configured correctly for the Domain Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-2"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3260-7</ident>
                        <ident system="cce.mitre.org/version/4">CCE-251</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="domain_profile_log_dropped_packets_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6401"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6401"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_logged_successful_connections" selected="false" weight="10.0">
                        <title>Logged Successful Connections</title>
                        <description>The "Log Successful Connections" option for the Windows Firewall should be configured correctly for the Domain Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-2"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3414-0</ident>
                        <ident system="cce.mitre.org/version/4">CCE-617</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="domain_profile_logged_successful_connections_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6402"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6402"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_name" selected="false" weight="10.0">
                        <title>Name</title>
                        <description>The log file path and name for the Windows Firewall should be configured correctly for the Domain Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2533-8</ident>
                        <ident system="cce.mitre.org/version/4">CCE-793</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="domain_profile_name_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6403"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6403"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_size_limit" selected="false" weight="10.0">
                        <title>Size Limit</title>
                        <description>The log file size limit for the Windows Firewall should be configured correctly for the Domain Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-4"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3299-5</ident>
                        <ident system="cce.mitre.org/version/4">CCE-57</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="domain_profile_size_limit_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6404"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6404"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_display_notification" selected="false" weight="10.0">
                        <title>Display a Notification</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Settings\Firewall settings</dc:source>
                        </reference>
                        <requires idref="AC-8"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4941-1</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1047</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="domain_profile_display_notification_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6518"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6518"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_apply_local_connection_security_rules" selected="false" weight="10.0">
                        <title>Apply Local Connection Security Rules</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Settings\Rule merging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2977-7</ident>
                        <ident system="cce.mitre.org/version/4">CCE-584</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6521" value-id="domain_profile_apply_local_connection_security_rules_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6521"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_apply_local_firewall_rules" selected="false" weight="10.0">
                        <title>Apply Local Firewall Rules</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Settings\Rule merging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3457-9</ident>
                        <ident system="cce.mitre.org/version/4">CCE-400</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6520" value-id="domain_profile_apply_local_firewall_rules_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6520"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_allow_unicast_response" selected="false" weight="10.0">
                        <title>Allow Unicast Response</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\Settings\Unicast response</dc:source>
                        </reference>
                        <requires idref="SC-5"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3436-3</ident>
                        <ident system="cce.mitre.org/version/4">CCE-696</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6519" value-id="domain_profile_allow_unicast_response_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6519"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_firewall_state" selected="false" weight="10.0">
                        <title>Firewall state</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3054-4</ident>
                        <ident system="cce.mitre.org/version/4">CCE-806</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6515" value-id="domain_profile_firewall_state_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6515"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_inbound_connections" selected="false" weight="10.0">
                        <title>Inbound Connections</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2999-1</ident>
                        <ident system="cce.mitre.org/version/4">CCE-249</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6516" value-id="domain_profile_inbound_connections_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6516"/>
                        </check>
                  </Rule>
                  <Rule id="domain_profile_outbound_connections" selected="false" weight="10.0">
                        <title>Outbound Connections</title>
                        <description>The Domain Profile is used when the computer is connected to a network and is authenticated to a domain controller.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3439-7</ident>
                        <ident system="cce.mitre.org/version/4">CCE-485</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6517" value-id="domain_profile_outbound_connections_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6517"/>
                        </check>
                  </Rule>
            </Group>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <!-- ~~~  Private Profile                                                                           -->
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <Group id="windows_firewall_with_advanced_security_private_profile">
                  <title>Windows Firewall with Advanced Security - Private Profile</title>
                  <description>The Public Profile is the default network location type when the computer is not connected to a domain. Public profile settings should be the most restrictive because the computer is connected to a public network where security cannot be as tightly controlled as within an IT environment.</description>
                  <Value id="private_profile_log_dropped_packets_var" operator="equals" type="number">
                        <title>private_profile_log_dropped_packets_var</title>
                        <description>todo</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="private_profile_logged_successful_connections_var" operator="equals" type="number">
                        <title>private_profile_logged_successful_connections_var</title>
                        <description>todo</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="private_profile_name_var" operator="pattern match" type="string">
                        <title>private_profile_name_var</title>
                        <description>todo</description>
                        <value>%windir%\system32\logfiles\firewall\publicfirewall</value>
                        <value selector="firewall_dir">^%windir%\\system32\\logfiles\\firewall\\[^\.][^\\]*$</value>
                  </Value>
                  <Value id="private_profile_size_limit_var" operator="equals" type="number">
                        <title>private_profile_size_limit_var</title>
                        <description>todo</description>
                        <value>0</value>
                        <value selector="16384_kb">16384</value>
                  </Value>
                  <Value id="private_profile_display_notification_var" operator="equals" type="number">
                        <title>Display a Notification</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <value>0</value>
                        <value selector="yes">0</value>
                        <value selector="no">1</value>
                  </Value>
                  <Value id="private_profile_apply_local_connection_security_rules_var" operator="equals" type="number">
                        <title>Apply Local Connection Security Rules</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="private_profile_apply_local_firewall_rules_var" operator="equals" type="number">
                        <title>Apply Local Firewall Rules</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="private_profile_allow_unicast_response_var" operator="equals" type="number">
                        <title>Allow Unicast Response</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <value>1</value>
                        <value selector="yes">0</value>
                        <value selector="no">1</value>
                  </Value>
                  <Value id="private_profile_firewall_state_var" operator="equals" type="number">
                        <title>Firewall state</title>
                        <description>todo - description needed</description>
                        <value>1</value>
                        <value selector="off">1</value>
                        <value selector="on">1</value>
                  </Value>
                  <Value id="private_profile_inbound_connections_var" operator="equals" type="number">
                        <title>Inbound Connections</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <value>1</value>
                        <value selector="allow">0</value>
                        <value selector="block">1</value>
                  </Value>
                  <Value id="private_profile_outbound_connections_var" operator="equals" type="number">
                        <title>Outbound Connections</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <value>0</value>
                        <value selector="allow">0</value>
                        <value selector="block">1</value>
                  </Value>
                  <Rule id="private_profile_log_dropped_packets" selected="false" weight="10.0">
                        <title>Log Dropped Packets</title>
                        <description>The "Log Dropped Packets" option for the Windows Firewall should be configured correctly for the Private Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-2"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4597-1</ident>
                        <ident system="cce.mitre.org/version/4">CCE-325</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="private_profile_log_dropped_packets_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6411"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6411"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_logged_successful_connections" selected="false" weight="10.0">
                        <title>Logged Successful Connections</title>
                        <description>The "Log Successful Connections" option for the Windows Firewall should be configured correctly for the Private Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-2"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4963-5</ident>
                        <ident system="cce.mitre.org/version/4">CCE-327</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="private_profile_logged_successful_connections_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6412"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6412"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_name" selected="false" weight="10.0">
                        <title>Name</title>
                        <description>The log file path and name for the Windows Firewall should be configured correctly for the Private Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4206-9</ident>
                        <ident system="cce.mitre.org/version/4">CCE-999</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="private_profile_name_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6413"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6413"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_size_limit" selected="false" weight="10.0">
                        <title>Size Limit</title>
                        <description>The log file size limit for the Windows Firewall should be configured correctly for the Private Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-4"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4207-7</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1091</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="private_profile_size_limit_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6414"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6414"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_display_notification" selected="false" weight="10.0">
                        <title>Display a Notification</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Settings\Firewall settings</dc:source>
                        </reference>
                        <requires idref="AC-8"/>
                        <ident system="http://cce.mitre.org">CCE-3417-3</ident>
                        <ident system="cce.mitre.org/version/4">CCE-38</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6525" value-id="private_profile_display_notification_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6525"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_apply_local_connection_security_rules" selected="false" weight="10.0">
                        <title>Apply Local Connection Security Rules</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Settings\Rule merging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2854-8</ident>
                        <ident system="cce.mitre.org/version/4">CCE-199</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6528" value-id="private_profile_apply_local_connection_security_rules_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6528"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_apply_local_firewall_rules" selected="false" weight="10.0">
                        <title>Apply Local Firewall Rules</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Settings\Rule merging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3360-5</ident>
                        <ident system="cce.mitre.org/version/4">CCE-117</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6527" value-id="private_profile_apply_local_firewall_rules_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6527"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_allow_unicast_response" selected="false" weight="10.0">
                        <title>Allow Unicast Response</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\Settings\Unicast response</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2924-9</ident>
                        <ident system="cce.mitre.org/version/4">CCE-70</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6526" value-id="private_profile_allow_unicast_response_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6526"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_firewall_state" selected="false" weight="10.0">
                        <title>Firewall state</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3373-8</ident>
                        <ident system="cce.mitre.org/version/4">CCE-7</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6522" value-id="private_profile_firewall_state_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6522"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_inbound_connections" selected="false" weight="10.0">
                        <title>Inbound Connections</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3395-1</ident>
                        <ident system="cce.mitre.org/version/4">CCE-29</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6523" value-id="private_profile_inbound_connections_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6523"/>
                        </check>
                  </Rule>
                  <Rule id="private_profile_outbound_connections" selected="false" weight="10.0">
                        <title>Outbound Connections</title>
                        <description>The Private Profile is used only if a local administrator changes the profile for a computer connected previously to a public network (using a Public Profile).</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Private Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3166-6</ident>
                        <ident system="cce.mitre.org/version/4">CCE-32</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6524" value-id="private_profile_outbound_connections_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6524"/>
                        </check>
                  </Rule>
            </Group>
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <!-- ~~~  Public Profile                                                                            -->
            <!-- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -->
            <Group id="windows_firewall_with_advanced_security_public_profile">
                  <title>Windows Firewall with Advanced Security - Public Profile</title>
                  <description>The Private Profile only applies if a user with local administrator privileges assigns it to a network that was previously set to Public. Microsoft recommends only doing this for a trusted network.</description>
                  <Value id="public_profile_log_dropped_packets_var" operator="equals" type="number">
                        <title>public_profile_log_dropped_packets_var</title>
                        <description>todo</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="public_profile_logged_successful_connections_var" operator="equals" type="number">
                        <title>public_profile_logged_successful_connections_var</title>
                        <description>todo</description>
                        <value>1</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="public_profile_name_var" operator="equals" type="string">
                        <title>public_profile_name_var</title>
                        <description>todo</description>
                        <value>%windir%\system32\logfiles\firewall\publicfirewall</value>
                        <value selector="firewall_dir">^%windir%\\system32\\logfiles\\firewall\\[^\.][^\\]*$</value>
                  </Value>
                  <Value id="public_profile_size_limit_var" operator="equals" type="number">
                        <title>public_profile_size_limit_var</title>
                        <description>todo</description>
                        <value>0</value>
                        <value selector="16384_kb">16384</value>
                  </Value>
                  <Value id="public_profile_display_notification_var" operator="equals" type="number">
                        <title>Display a Notification</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>1</value>
                        <value selector="yes">0</value>
                        <value selector="no">1</value>
                  </Value>
                  <Value id="public_profile_apply_local_connection_security_rules_var" operator="equals" type="number">
                        <title>Apply Local Connection Security Rules</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>0</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="public_profile_apply_local_firewall_rules_var" operator="equals" type="number">
                        <title>Apply Local Firewall Rules</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>0</value>
                        <value selector="no">0</value>
                        <value selector="yes">1</value>
                  </Value>
                  <Value id="public_profile_allow_unicast_response_var" operator="equals" type="number">
                        <title>Allow Unicast Response</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>1</value>
                        <value selector="yes">0</value>
                        <value selector="no">1</value>
                  </Value>
                  <Value id="public_profile_firewall_state_var" operator="equals" type="number">
                        <title>Firewall state</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>1</value>
                        <value selector="off">1</value>
                        <value selector="on">1</value>
                  </Value>
                  <Value id="public_profile_inbound_connections_var" operator="equals" type="number">
                        <title>Inbound Connections</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>1</value>
                        <value selector="allow">0</value>
                        <value selector="block">1</value>
                  </Value>
                  <Value id="public_profile_outbound_connections_var" operator="equals" type="number">
                        <title>Outbound Connections</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <value>0</value>
                        <value selector="allow">0</value>
                        <value selector="block">1</value>
                  </Value>
                  <Rule id="public_profile_log_dropped_packets" selected="false" weight="10.0">
                        <title>Log Dropped Packets</title>
                        <description>The "Log Dropped Packets" option for the Windows Firewall should be configured correctly for the Public Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-2"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4507-0</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1165</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="public_profile_log_dropped_packets_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6421"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6421"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_logged_successful_connections" selected="false" weight="10.0">
                        <title>Logged Successful Connections</title>
                        <description>The "Log Successful Connections" option for the Windows Firewall should be configured correctly for the Public Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-2"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-5128-4</ident>
                        <ident system="cce.mitre.org/version/4">CCE-534</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="public_profile_logged_successful_connections_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6422"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6422"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_name" selected="false" weight="10.0">
                        <title>Name</title>
                        <description>The log file path and name for the Windows Firewall should be configured correctly for the Public Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4639-1</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1263</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="public_profile_name_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6423"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6423"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_size_limit" selected="false" weight="10.0">
                        <title>Size Limit</title>
                        <description>The log file size limit for the Windows Firewall should be configured correctly for the Public Profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Logging</dc:source>
                        </reference>
                        <requires idref="AU-4"/>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-4278-8</ident>
                        <ident system="cce.mitre.org/version/4">CCE-1313</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export value-id="public_profile_size_limit_var" export-name="oval:gov.nist.fdcc.vistafirewall:var:6424"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6424"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_display_notification" selected="false" weight="10.0">
                        <title>Display a Notification</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Settings\Firewall settings</dc:source>
                        </reference>
                        <requires idref="AC-8"/>
                        <ident system="http://cce.mitre.org">CCE-2998-3</ident>
                        <ident system="cce.mitre.org/version/4">CCE-390</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6532" value-id="public_profile_display_notification_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6532"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_apply_local_connection_security_rules" selected="false" weight="10.0">
                        <title>Apply Local Connection Security Rules</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Settings\Rule merging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3426-4</ident>
                        <ident system="cce.mitre.org/version/4">CCE-437</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6535" value-id="public_profile_apply_local_connection_security_rules_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6535"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_apply_local_firewall_rules" selected="false" weight="10.0">
                        <title>Apply Local Firewall Rules</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Settings\Rule merging</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2650-0</ident>
                        <ident system="cce.mitre.org/version/4">CCE-421</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6534" value-id="public_profile_apply_local_firewall_rules_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6534"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_allow_unicast_response" selected="false" weight="10.0">
                        <title>Allow Unicast Response</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\Settings\Unicast response</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-2641-9</ident>
                        <ident system="cce.mitre.org/version/4">CCE-414</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6533" value-id="public_profile_allow_unicast_response_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6533"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_firewall_state" selected="false" weight="10.0">
                        <title>Firewall state</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3246-6</ident>
                        <ident system="cce.mitre.org/version/4">CCE-295</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6529" value-id="public_profile_firewall_state_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6529"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_inbound_connections" selected="false" weight="10.0">
                        <title>Inbound Connections</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3263-1</ident>
                        <ident system="cce.mitre.org/version/4">CCE-338</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6530" value-id="public_profile_inbound_connections_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6530"/>
                        </check>
                  </Rule>
                  <Rule id="public_profile_outbound_connections" selected="false" weight="10.0">
                        <title>Outbound Connections</title>
                        <description>The Public Profile is the default profile for a computer connected to a public network but not connected to a domain controller. This should be the most restricted profile.</description>
                        <reference>
                              <dc:type>GPO</dc:type>
                              <dc:source>Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile Tab\State</dc:source>
                        </reference>
                        <requires idref="SC-7"/>
                        <ident system="http://cce.mitre.org">CCE-3351-4</ident>
                        <ident system="cce.mitre.org/version/4">CCE-342</ident>
                        <check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
                              <check-export export-name="oval:gov.nist.fdcc.vistafirewall:var:6531" value-id="public_profile_outbound_connections_var"/>
                              <check-content-ref href="fdcc-vistafirewall-oval.xml" name="oval:gov.nist.fdcc.vistafirewall:def:6531"/>
                        </check>
                  </Rule>
            </Group>
      </Group>
      <!-- **************************************************************************************************** -->
      <!-- ***  4 - Security Patches                                                                    *** -->
      <!-- **************************************************************************************************** -->
      <!--                                                                                                      -->
      <!-- see operating system benchmark                                                                       -->
      <!--                                                                                                      -->
      <!-- ==================================================================================================== -->
      <!-- ==================================================================================================== -->
      <!-- ==================================================================================================== -->
</Benchmark>
