1. Confidentiality of information on all links except satellite-user is required (the capability to secure the SV-user link must also be present, but is not generally used during peacetime).
2. Authentication of information on all links (e.g., source is as claimed) except SV-user required.
3. Data integrity (the ability to detect data altered enroute) is required on all links.
4. Resistance to externally-generated denial of service attacks is required.
5. Distribution of keying material over large physical distances must be considered.