Check: GEN003619
Solaris 10 X86 STIG:
GEN003619
(in versions v2 r4 through v1 r17)
Title
The system must not be configured for network bridging. (Cat II impact)
Discussion
Some systems have the ability to bridge or switch frames (link-layer forwarding) between multiple interfaces. This can be useful in a variety of situations but, if enabled when not needed, has the potential to bypass network partitioning and security.
Check Content
Ask the system administrator if network bridging software is installed on the system or the system is configured for network bridging. If network bridging software is installed or the system is configured for network bridging, this is a finding.
Fix Text
Remove the network bridging software and configuration from the system.
Additional Identifiers
Rule ID: SV-220090r603266_rule
Vulnerability ID: V-220090
Group Title: SRG-OS-000095
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
The organization configures the information system to provide only essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |