home/glossary/designated source

designated source

nounverified·updated Aug 30, 2026

An endpoint — a network, individual, or device — that has been explicitly authorized and named in an information flow control policy as a permitted origin of information movement within or between systems, distinct from *who* may access the information. Flow control policies operate on the characteristics of the information or the information path, and enforcement is carried out in boundary protection devices such as firewalls, routers, and gateways that apply rule sets or packet- and message-filtering capabilities. In practice, organizations use information flow control policies and enforcement mechanisms to govern the movement of sensitive data (e.g., CUI) between designated sources and destinations, regulating *where* information may travel rather than merely *who* may see it. The expression is strictly paired — a source has meaning only relative to a corresponding destination — and the "designated" qualifier signals that the endpoint has been deliberately enumerated in policy, not simply inferred at runtime.

MWELegacy lexicon import

Senses

NIST SP 800-171r3attested usage reviewer confirmed

No definition is given in NIST SP 800-171r3. The term is attested in use at 1 citation in that document; a definition is pending curation.

Classifications

Entity Type

Network80%llm-generatedllm:claude-haiku-4-5
?unassignedlast reviewed

Sensitivity

Regulated85%rule-basedr:sens.regulated.framework.v1
?unassignedlast reviewed

Information Class

Cui75%llm-generatedllm:claude-haiku-4-5
?unassignedlast reviewed

Variants

plural
designated sources
possessive
designated source's
pluralpossessive
designated sources'