# SI-8 — Spam Protection

- **Control ID:** SI-8
- **Family:** [SI](/md/families/SI.md)
- **Baselines:** moderate, high
- **Enhancement of:** No content available.

## Description

Employ spam protection mechanisms at system entry and exit points to detect and act on unsolicited messages; and Update spam protection mechanisms when new releases are available in accordance with organizational configuration management policy and procedures.

## Discussion

System entry and exit points include firewalls, remote-access servers, electronic mail servers, web servers, proxy servers, workstations, notebook computers, and mobile devices. Spam can be transported by different means, including email, email attachments, and web accesses. Spam protection mechanisms include signature definitions.

## Implementation guidance

No content available.

## CSF 2.0 subcategories

No content available.

## Related controls

- [PL-9](/md/controls/PL-9.md)
- [SC-5](/md/controls/SC-5.md)
- [SC-7](/md/controls/SC-7.md)
- [SC-38](/md/controls/SC-38.md)
- [SI-3](/md/controls/SI-3.md)
- [SI-4](/md/controls/SI-4.md)

---

Derived from official NIST publications (NIST SP 800-53 Rev 5 and NIST CSF 2.0). nistcontrols.com is not affiliated with NIST.
