AC.L1-3.1.1

Originally published at: https://grcacademy.io/cmmc/controls/ac-l1-3-1-1/

Limit information system access to authorized users, processes acting on behalf of authorized users, or devices (including other information systems).