Skip to main content
NDAA Section 889 · Part B(1)

NDAA §889 Compliance Guide

The National Defense Authorization Act for FY2019, Section 889, prohibits U.S. government agencies from procuring or using video surveillance equipment from specific Chinese-owned vendors. RMADOR enforces this at the platform level — not as a configuration option, but as a hardware-fingerprint block that no operator can override.

NDAA_STRICT mode by default on Local SKUMAC OUI + ONVIF string enforcementOnly credible AI platform for US gov contracts

Prohibited equipment

HikvisionIncluding OEM re-labelled products (Longse, NVSIP, others sharing HiSilicon chipsets)
DahuaIncluding Amcrest, Lorex, and other known OEM brands
Huawei / HiSiliconChipset ban — applies even when camera brand is non-Chinese
HyteraTwo-way radios and body cameras
ZTENetworking infrastructure and cameras

The ban extends to subsidiaries, affiliates, and OEM products using prohibited chipsets — not just the named vendor's branded hardware. When in doubt, require a signed NDAA compliance letter from the manufacturer per model SKU.

Approved vendors

Axis Communications
Bosch Security Systems
Hanwha Vision (verify per model SKU — some models import restricted components)
Pelco (Motorola Solutions)
Avigilon (Motorola Solutions)
Vivotek
Sony Security
Mobotix
IndigoVision

How RMADOR enforces §889

1

MAC OUI check

Camera MAC address is looked up against a database of OUIs assigned to prohibited vendors. Blocked before ONVIF session is established.

2

ONVIF manufacturer string

The ONVIF DeviceInformation.Manufacturer field is checked against the prohibited vendor list. Spoofed strings are flagged.

3

Plugin NDAA flag

Every camera plugin declares ndaa_compliant=True or ndaa_compliant=False. PluginManager refuses to load non-compliant plugins when NDAA_STRICT=true.

4

NDAA_STRICT site flag

A per-site flag that, when enabled, disables all override mechanisms. Non-compliant equipment cannot be enrolled regardless of operator role.

5

Vendor compliance letter

Before a new camera model is added to the approved list, a signed NDAA compliance letter per model SKU is required from the vendor.

Procurement checklist

  • Obtain signed NDAA compliance letter from vendor per camera model SKU
  • Verify MAC OUI against RMADOR approved vendor list before purchase
  • Check ONVIF DeviceInformation.Manufacturer string after installation
  • Enable NDAA_STRICT mode on site for government/defence deployments
  • Audit installed base annually — vendor NDAA status can change with ownership changes
  • Document compliance letters in your procurement system with model-level granularity
  • Training footage: no Hikvision or Dahua footage in training data (enforced by RMADOR dataset pipeline gate)

Disclaimer:This guide reflects RMADOR's current understanding of NDAA §889 requirements. It does not constitute legal advice. Consult legal counsel for definitive compliance determination specific to your procurement context and contracting vehicle.

Last reviewed: May 2026 · For questions: [email protected]