3.6.1.2 Ensure iptables-persistent is not installed

Information

The iptables-persistent is a boot-time loader for netfilter rules, iptables plugin

Rationale:

Running both ufw and the services included in the iptables-persistent package may lead to conflict

Solution

Run the following command to remove the iptables-persistent package:

# apt purge iptables-persistent

See Also

https://workbench.cisecurity.org/files/2920

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv7|9.4

Plugin: Unix

Control ID: 19a6e6959880ba5669d2b2fb65c5298bcc92b00ca0ffea21a16cd6fad49c5db5