4.3.1.1 Ensure iptables packages are installed

Information

iptables is a utility program that allows a system administrator to configure the tables provided by the Linux kernel firewall, implemented as different Netfilter modules, and the chains and rules it stores. Different kernel modules and programs are used for different protocols; iptables applies to IPv4, ip6tables to IPv6, arptables to ARP, and ebtables to Ethernet frames.

A method of configuring and maintaining firewall rules is necessary to configure a Host Based Firewall.

Solution

Run the following command to install iptables and iptables-persistent

# apt install iptables iptables-persistent

See Also

https://workbench.cisecurity.org/benchmarks/17331

Item Details

Category: SECURITY ASSESSMENT AND AUTHORIZATION, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CA-9, 800-53|SC-7, 800-53|SC-7(5), CSCv7|9.4

Plugin: Unix

Control ID: 2deb57a32f7332570ed840ffb11fc2de7fa7f704c1b587891640aa9dedbb89dc