Check: GEN003619
Solaris 10 SPARC STIG:
GEN003619
(in versions v2 r4 through v1 r19)
Title
The system must not be configured for network bridging. (Cat II impact)
Discussion
Some systems have the ability to bridge or switch frames (link-layer forwarding) between multiple interfaces. This can be useful in a variety of situations but, if enabled when not needed, has the potential to bypass network partitioning and security.
Check Content
Ask the system administrator if network bridging software is installed on the system or the system is configured for network bridging. If network bridging software is installed or the system is configured for network bridging, this is a finding.
Fix Text
Remove the network bridging software and configuration from the system.
Additional Identifiers
Rule ID: SV-220037r603265_rule
Vulnerability ID: V-220037
Group Title: SRG-OS-000095
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
The organization implements the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |