Check: GEN005590
Solaris 10 SPARC STIG:
GEN005590
(in versions v2 r4 through v1 r19)
Title
The system must not be running any routing protocol daemons, unless the system is a router. (Cat II impact)
Discussion
Routing protocol daemons are typically used on routers to exchange network topology information with other routers. If this software is used when not required, system network information may be unnecessarily transmitted across the network.
Check Content
Check for any running routing protocol daemons. # svcs -a | grep online | egrep '(ospf|route|bgp|zebra|quagga)' OR # ps -ef | egrep '(ospf|route|bgp|zebra|quagga)' If any routing protocol daemons are listed, this is a finding.
Fix Text
Disable any routing protocol daemons. # svcadm disable <routing protocol daemon>
Additional Identifiers
Rule ID: SV-227005r603265_rule
Vulnerability ID: V-227005
Group Title: SRG-OS-000480
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
The organization implements the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |