Check: GEN008520
SUSE Linux Enterprise Server v11 for System z STIG:
GEN008520
(in versions v1 r12 through v1 r9)
Title
The system must employ a local firewall. (Cat II impact)
Discussion
A local firewall protects the system from exposing unnecessary or undocumented network services to the local enclave. If a system within the enclave is compromised, firewall protection on an individual system continues to protect it from attack.
Check Content
Determine if the system is using a local firewall. # rcSuSEfirewall2 status If the service is not "running”, this is a finding.
Fix Text
Enable the system's local firewall. # rcSuSEfirewall2 start # insserv SuSEfirewall2_init # insserv SuSEfirewall2_setup
Additional Identifiers
Rule ID: SV-46049r1_rule
Vulnerability ID: V-22582
Group Title: GEN008520
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
CCI-001118 |
The information system implements host-based boundary protection mechanisms for servers, workstations, and mobile devices. |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |