Revision 1.3

Nov 16, 2021
Functional Update
  • 3.2.1 Ensure IP forwarding is disabled - ipv6 sysctl
  • 3.2.1 Ensure IP forwarding is disabled - ipv6 sysctlc.conf sysctl.d
  • 3.5.3.1.3 Ensure firewalld is either not installed or masked with iptables - masked
  • 5.4.2 Ensure lockout for failed password attempts is configured - password-auth 'auth sufficient pam_unix.so'
  • 5.4.2 Ensure lockout for failed password attempts is configured - system-auth 'auth sufficient pam_unix.so'
Miscellaneous
  • References updated.
Added
  • 3.2.1 Ensure IP forwarding is disabled - ipv4 sysctlc.conf sysctl.d
  • 3.2.1 Ensure IP forwarding is disabled - ipv6 sysctl.conf sysctl.d
Removed
  • 3.2.1 Ensure IP forwarding is disabled - ipv6 files
  • 3.2.1 Ensure IP forwarding is disabled - sysctlc.conf sysctl.d