Crucible SHALL transfer information between Security Domains only through an authorized Cross-Domain Transfer.
This requirement derives from:
The Original Requirement states:
The system SHALL support classified and unclassified deployment environments.[C1]
OR-003f isolates the obligation to control information movement between Security Domains.
Authorization to process information within one Security Domain does not authorize movement of that information into another Security Domain.
A transfer can cross boundaries established by different security policies, classification levels, compartments, handling restrictions, organizations, missions, or release authorities.
OR-003f prevents Crucible from moving information across a Security Domain boundary without an authorized Cross-Domain Transfer.
The Crucible Concept of Operations describes dependency capture, transfer-bundle creation, import, validation, and offline use across connected, disconnected, and air-gapped environments.
When the source and destination environments belong to different Security Domains, that workflow constitutes a Cross-Domain Transfer and requires the controls established by OR-003f.
This requirement applies to:
Verification confirms that:
The following pages reference this requirement:
Implemented and Verified.
Assess whether the current Crucible implementation transfers information between Security Domains only through an authorized Cross-Domain Transfer.
Review and approve OR-003f as a leaf requirement derived from OR-003.
Identify the authority responsible for authorizing each supported Cross-Domain Transfer.
Define how Crucible identifies the source Security Domain.
Define how Crucible identifies the destination Security Domain.
Define how Crucible identifies the information selected for transfer.
Define how Crucible determines whether a Cross-Domain Transfer is authorized.
Define the behavior required when the source and destination belong to the same Security Domain.
Define the behavior required when the source or destination Security Domain cannot be determined.
Define the record required for an authorized, denied, failed, or terminated Cross-Domain Transfer.
This requirement page should retain the stable requirement identifier OR-003f.
This page is a leaf requirement page and omits a trailing :start from its namespace.
OR-003f governs whether information may cross a Security Domain boundary. It does not define the detailed processing steps performed by a Cross-Domain Transfer mechanism.
The responsible authority establishes:
Changes to the Statement should preserve:
Requirements governing whether information is authorized within a Security Domain should remain in OR-003d — Security Domain Information Enforcement.
Requirements governing the permitted handling of information should remain in OR-003e — Information Handling Rule Enforcement.
To reference this requirement Statement from another wiki page, insert:
{{section>dido:02-crusible:99-annexes:annex-c-requirements:02-operational-requirements:or-003:or-003f#Statement&noheader&nofooter&noeditbtn}}
Do not rename this page after an external citation unless a redirect or move plan is in place.
© 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc.