The security of the firewall is weighed against the rights of users and other individuals affected by the system.
The security of the firewall is compatible with the legitimate use and flow of data and information in the context of the organization.
The nature and amount of data collected is balanced by the nature and amount of data that should be collected.
The accuracy of collected data is assured in accordance with the amount of damage that may occur due to its corruption.
Individuals' privacy is protected against the power of computer matching.
Public and private information is explicitly identified.
Organization policy on monitoring information passing through the firewall is documented to limit organizational liability, to reduce potential for abuse, and to permit prosecution when abuse is detected.
The monitoring of information and individuals is performed within a system of internal controls to prevent abuse.

