Check: GEN003619
Solaris 9 X86 STIG:
GEN003619
(in version v1 r9)
Title
The system must not be configured for network bridging. (Cat II impact)
Discussion
Some systems have the ability to bridge or switch frames (link-layer forwarding) between multiple interfaces. This can be useful in a variety of situations but, if enabled when not needed, has the potential to bypass network partitioning and security.
Check Content
Ask the system administrator if network bridging software is installed on the system or the system is configured for network bridging. If network bridging software is installed or the system is configured for network bridging, this is a finding.
Fix Text
Remove the network bridging software and configuration from the system.
Additional Identifiers
Rule ID: SV-42308r1_rule
Vulnerability ID: V-22421
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001551 |
The organization defines approved authorizations for controlling the flow of information between interconnected systems. |
Controls
Number | Title |
---|---|
AC-4 |
Information Flow Enforcement |