Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the easy-accordion-free domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/rwpc324465/public_html/rwblog/wp-includes/functions.php on line 6131

Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the otter-blocks domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/rwpc324465/public_html/rwblog/wp-includes/functions.php on line 6131

Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wordpress-seo domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/rwpc324465/public_html/rwblog/wp-includes/functions.php on line 6131

Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the neve domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/rwpc324465/public_html/rwblog/wp-includes/functions.php on line 6131

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902

Warning: Cannot modify header information - headers already sent by (output started at /home/rwpc324465/public_html/rwblog/wp-includes/functions.php:6131) in /home/rwpc324465/public_html/rwblog/wp-includes/rest-api/class-wp-rest-server.php on line 1902
{"id":73665,"date":"2020-10-22T09:50:18","date_gmt":"2020-10-22T09:50:18","guid":{"rendered":"http:\/\/www.ryanandwetmore.com\/?p=73665"},"modified":"2022-06-27T22:23:55","modified_gmt":"2022-06-27T22:23:55","slug":"dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171","status":"publish","type":"post","link":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/","title":{"rendered":"Updated Rules: CMMC & NIST SP 800-171"},"content":{"rendered":"\n\n\n\n\n

DoD\u2019s Updated Cybersecurity Rules Can Block Your Next Government Contract Award or Renewal <\/h2>\n\n\n\n

Aware of the instability of self-certification under DFARS 252.204-7012 <\/tcxspan>and the need for a more formal program to assess federal contractor implementation of the NIST SP 800-171 requirements, the Department of Defense (DoD) published an interim rule on September 29, 2020 regarding the implementation of the Cybersecurity Maturity Model Certification (CMMC). <\/p>\n\n\n\n

This rule calls for immediate cybersecurity self-assessment from DoD contractors and describes expectations for full CMMC implementation over the next five years. <\/p>\n\n\n\n

Failure to acknowledge and plan for the immediate and future requirements of the interim CMMC rule may result in lost business and contracting opportunities.<\/strong>  <\/p>\n\n\n\n

What are the Cybersecurity Maturity Model Certification (CMMC) and NIST SP 800-171 DoD Assessment Requirements?<\/strong>  <\/h3>\n\n\n\n

The DoD\u2019s Cybersecurity Maturity Model Certification (CMMC) is a combination of standards and processes that builds upon NIST SP 800-171. NIST SP 800-171 is a codification of the requirements that any non-Federal computer system must follow to store, process, or transmit Controlled Unclassified Information (CUI).  <\/p>\n\n\n\n

The CMMC combines existing cybersecurity FAR \/ DFARS clauses, NIST SP 800-171 requirements, CMMC practices, and CMMC processes into a five-tier certification program   The DoD describes CMMC as a \u201ccomprehensive and scalable\u201d certification framework. Additionally, CMMC certifications will be conducted by accredited CMMC Third Party Assessment Organizations (C3PAOs). <\/p>\n\n\n\n

The NIST SP 800-171 DoD Assessment Requirements (see new DFARS clauses 252.204-7019 and 252.204-7020) are a bridge between the current DFARS cybersecurity clause 252.204-7012 and full CMMC contract implementation. The newly released interim rule instructs contractors to perform and submit \u201cBasic\u201d self-assessments through the Supplier Performance Risk Systems (SPRS). It also requires contractors to allow DoD access to conduct \u201cMedium\u201d and \u201cHigh\u201d level assessments as deemed necessary.  <\/p>\n\n\n\n

Which Federal Contractors Need to Take Immediate Action Under DoD\u2019s New Assessment Requirements?<\/strong>  <\/h3>\n\n\n\n

The new DFARS provision 252.204-7019 advises offerors to implement the NIST SP 800-171 standards (including contractors with DFARS clause 252.204-7012) to have a current (not older than three years) NIST SP 800-171 DoD Assessment on record in order to be considered for award.  <\/p>\n\n\n\n

The provision requires offerors to ensure the results of any applicable current assessments are posted in the Supplier Performance Risk System (SPRS) and provides offerors with additional information on conducting and submitting an Assessment when a current one is not posted in SPRS. <\/p>\n\n\n\n

DFARS 252.204-7019 <\/tcxspan>offers a \u201cBasic\u201d assessment level that can be completed and submitted as a contractor self-assessment. <\/p>\n\n\n\n

As of November 30, 2020, in order to be considered for awards, renewals, options, task orders, or other actions, contractor<\/strong>s<\/strong> will need to have a current assessment for each covered contractor information system that is relevant to the offer posted to the Supplier Performance Risk System (SPRS).<\/strong> <\/p>\n\n\n\n

In simpler terms, all DoD or potential DoD contractors (and subcontractors) need to review the interim rule and assessment clause as soon as possible and take any required actions to prevent interruptions or denials of awards. <\/strong> <\/p>\n\n\n\n

According to the interim rule and clause, it may take up to 30 days for scores to post to SPRS, so it is imperative that affected contractors provide self-assessments as soon as possible in advance of the November 30, 2020 date. <\/p>\n\n\n\n

Additionally, DFARS provision 252.204-7019 <\/tcxspan>flows down to subcontracts from prime contractors instructed not to award a subcontract or other contractual instrument subject to DFARS clause 252.204-7012,<\/tcxspan> unless the subcontractor has completed at least the Basic NIST SP 800-171 DoD Assessment. Subcontractors can conduct and submit the Basic Assessment for posting to SPRS. <\/p>\n\n\n\n

What About Longer-term Decision Making For CMMC Implementation?<\/strong>  <\/h3>\n\n\n\n

The CMMC will apply to all DoD solicitations and contracts starting on or after October 1, 2025. In the meantime, DoD will selectively include the clause 252.204-7021 Cybersecurity Maturity Model Certification Requirements in solicitations as part of a phased rollout.  <\/p>\n\n\n\n

Contractors continuing or seeking to perform work with the DoD will need to determine the appropriate CMMC level to certify and maintain. Not meeting the CMMC level requirement upon solicitation release may limit a contractor\u2019s ability to bid or receive an award. Given CMMC certifications will be conducted by C3PAOs, advanced planning is required to secure certification prior to solicitation release. <\/p>\n\n\n\n

Below is a brief description of CMMC level requirements: <\/p>\n\n\n

\n
\"\"<\/figure>\n<\/div>\n\n\n

Based on descriptions published within the interim rule, Level 2 is intended as an optional, immediate step between Level 1 and Level 3. Levels 4 and 5 are meant to promote security standards when contractors may face advanced threats. Hence, it can be expected that many contractors will be targeting certification at Level 1 or Level 3. <\/p>\n\n\n\n

Also, note that Level 1 references FAR clause 52.204-21. While CMMC is a DoD program, this FAR cybersecurity clause is generally incorporated across agency contracts, so it is not outlandish to speculate that non-DoD contractors may become subject to a program like CMMC in the future. <\/p>\n\n\n\n

In summary, contractors, whether DoD or non-DoD, should assess their business\u2019s current cybersecurity implementation, take stock of existing contract cybersecurity compliance, and begin planning for the CMMC rule and certification levels based on anticipated future federal contracting activity. <\/p>\n\n\n\n

Summary & Next Steps with Regards to DoD\u2019s Interim CMMC Rule<\/strong>  <\/h3>\n\n\n\n

With the essential framework of CMMC, the new DFARS clauses, and DoD assessment methodology all well defined in the interim rule\u2019s publication, all federal contractors should conduct a serious, methodical review of cybersecurity implementation and federal contract compliance. DoD contractors who are subject to DFARS cybersecurity clause 252.204-7012 need to give extra attention to the rule and begin immediate implementation and planning. <\/p>\n\n\n\n

Additionally, DoD contractors need to quickly identify if they are subject to the NIST 800-171 DoD Assessment Requirements and make plans to submit the company\u2019s system self-certification to SPRS for posting by November 30, 2020 or as soon as practicably possible. Prime contractors will want to notify subcontractors of the assessment requirement and flow down the requirement as applicable. <\/p>\n\n\n\n

DoD and all other federal agency contractors should review the interim CMMC rule and determine their specific business approach to certification level and third-party certification engagement. <\/p>\n\n\n\n

Failure to acknowledge and plan for the immediate and future requirements of the interim CMMC rule <\/strong>may<\/strong> result in lost business and contracting opportuni<\/strong>ties.<\/strong> <\/p>\n\n\n\n

If you have questions regarding the near and long-term business impacts of DoD\u2019s Cybersecurity Maturity Model Certification to federal contractors, please contact Government Contracting Specialist and Senior Finance Consultant, Zach Ficklin at Ryan & Wetmore, P.C. <\/p>\n\n\n\n

<\/div>\n\n\n\n
Contact us <\/a><\/div>\n\n\n\n
<\/div>\n","protected":false},"excerpt":{"rendered":"

The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.<\/p>\n","protected":false},"author":2,"featured_media":80159,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"neve_meta_sidebar":"","neve_meta_container":"","neve_meta_enable_content_width":"","neve_meta_content_width":0,"neve_meta_title_alignment":"","neve_meta_author_avatar":"","neve_post_elements_order":"","neve_meta_disable_header":"","neve_meta_disable_footer":"","neve_meta_disable_title":"","_themeisle_gutenberg_block_has_review":false,"_ti_tpc_template_sync":false,"_ti_tpc_template_id":"","footnotes":""},"categories":[21,2],"tags":[374,12,375,20,30],"class_list":["post-73665","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-government-contracting","category-manufacturing","tag-cmmc","tag-contractors","tag-dod","tag-government-contracting","tag-subcontracting"],"yoast_head":"\nUpdated Rules: CMMC & NIST SP 800-171 -<\/title>\n<meta name=\"description\" content=\"The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.\" \/>\n<meta name=\"robots\" content=\"noindex, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Updated Rules: CMMC & NIST SP 800-171\" \/>\n<meta property=\"og:description\" content=\"The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/\" \/>\n<meta property=\"article:published_time\" content=\"2020-10-22T09:50:18+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-06-27T22:23:55+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.randwpc.com\/rwblog\/wp-content\/uploads\/2020\/10\/markus-spiske-FXFz-sW0uwo-unsplash-2048x1365-min.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2048\" \/>\n\t<meta property=\"og:image:height\" content=\"1365\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/#website\",\"url\":\"https:\/\/www.randwpc.com\/rwblog\/\",\"name\":\"\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.randwpc.com\/rwblog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#primaryimage\",\"url\":\"https:\/\/www.randwpc.com\/rwblog\/wp-content\/uploads\/2020\/10\/markus-spiske-FXFz-sW0uwo-unsplash-2048x1365-min.jpg\",\"contentUrl\":\"https:\/\/www.randwpc.com\/rwblog\/wp-content\/uploads\/2020\/10\/markus-spiske-FXFz-sW0uwo-unsplash-2048x1365-min.jpg\",\"width\":2048,\"height\":1365,\"caption\":\"Updated Rules: CMMC & NIST SP 800-171\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#webpage\",\"url\":\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/\",\"name\":\"Updated Rules: CMMC & NIST SP 800-171 -\",\"isPartOf\":{\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#primaryimage\"},\"datePublished\":\"2020-10-22T09:50:18+00:00\",\"dateModified\":\"2022-06-27T22:23:55+00:00\",\"author\":{\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/#\/schema\/person\/177c213fa9a5c9f1a60bab6fdc64dd1f\"},\"description\":\"The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.randwpc.com\/rwblog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Updated Rules: CMMC & NIST SP 800-171\"}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.randwpc.com\/rwblog\/#\/schema\/person\/177c213fa9a5c9f1a60bab6fdc64dd1f\",\"name\":\"Saskia Jones\",\"url\":\"https:\/\/www.randwpc.com\/rwblog\/author\/rwadmin453\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Updated Rules: CMMC & NIST SP 800-171 -","description":"The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.","robots":{"index":"noindex","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"og_locale":"en_US","og_type":"article","og_title":"Updated Rules: CMMC & NIST SP 800-171","og_description":"The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.","og_url":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/","article_published_time":"2020-10-22T09:50:18+00:00","article_modified_time":"2022-06-27T22:23:55+00:00","og_image":[{"width":2048,"height":1365,"url":"https:\/\/www.randwpc.com\/rwblog\/wp-content\/uploads\/2020\/10\/markus-spiske-FXFz-sW0uwo-unsplash-2048x1365-min.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebSite","@id":"https:\/\/www.randwpc.com\/rwblog\/#website","url":"https:\/\/www.randwpc.com\/rwblog\/","name":"","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.randwpc.com\/rwblog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#primaryimage","url":"https:\/\/www.randwpc.com\/rwblog\/wp-content\/uploads\/2020\/10\/markus-spiske-FXFz-sW0uwo-unsplash-2048x1365-min.jpg","contentUrl":"https:\/\/www.randwpc.com\/rwblog\/wp-content\/uploads\/2020\/10\/markus-spiske-FXFz-sW0uwo-unsplash-2048x1365-min.jpg","width":2048,"height":1365,"caption":"Updated Rules: CMMC & NIST SP 800-171"},{"@type":"WebPage","@id":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#webpage","url":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/","name":"Updated Rules: CMMC & NIST SP 800-171 -","isPartOf":{"@id":"https:\/\/www.randwpc.com\/rwblog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#primaryimage"},"datePublished":"2020-10-22T09:50:18+00:00","dateModified":"2022-06-27T22:23:55+00:00","author":{"@id":"https:\/\/www.randwpc.com\/rwblog\/#\/schema\/person\/177c213fa9a5c9f1a60bab6fdc64dd1f"},"description":"The CMMC be effective on November 30, 2020, and will impact agencies from top-down, from prime contractors to subcontractors.","breadcrumb":{"@id":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.randwpc.com\/rwblog\/dods-updated-cybersecurity-rules-cmmc-nist-sp-800-171\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.randwpc.com\/rwblog\/"},{"@type":"ListItem","position":2,"name":"Updated Rules: CMMC & NIST SP 800-171"}]},{"@type":"Person","@id":"https:\/\/www.randwpc.com\/rwblog\/#\/schema\/person\/177c213fa9a5c9f1a60bab6fdc64dd1f","name":"Saskia Jones","url":"https:\/\/www.randwpc.com\/rwblog\/author\/rwadmin453\/"}]}},"_links":{"self":[{"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/posts\/73665","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/comments?post=73665"}],"version-history":[{"count":4,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/posts\/73665\/revisions"}],"predecessor-version":[{"id":81695,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/posts\/73665\/revisions\/81695"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/media\/80159"}],"wp:attachment":[{"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/media?parent=73665"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/categories?post=73665"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.randwpc.com\/rwblog\/wp-json\/wp\/v2\/tags?post=73665"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}