Check: GEN003602
HP-UX 11.31 STIG:
GEN003602
(in versions v1 r19 through v1 r13)
Title
The system must not process Internet Control Message Protocol (ICMP) timestamp requests. (Cat III impact)
Discussion
The processing of ICMP timestamp requests increases the attack surface of the system.
Check Content
Verify the system does not respond to ICMP Timestamp requests. # ndd -get /dev/ip ip_respond_to_timestamp If the result is not 0, this is a finding.
Fix Text
Disable ICMP Timestamp responses on the system. # ndd -set /dev/ip ip_respond_to_timestamp 0 Edit /etc/rc.config.d/nddconf and add/set: TRANSPORT_NAME[x]=ip NDD_NAME[x]=ip_respond_to_timestamp NDD_VALUE[x]=0
Additional Identifiers
Rule ID: SV-35022r1_rule
Vulnerability ID: V-22409
Group Title: GEN003602
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001551 |
The organization defines approved authorizations for controlling the flow of information between interconnected systems. |
Controls
Number | Title |
---|---|
AC-4 |
Information Flow Enforcement |