18.4.10 Ensure 'MSS: (TcpMaxDataRetransmissions IPv6) How many times unacknowledged data is retransmitted' is set to 'Enabled: 3'

Information

This setting controls the number of times that TCP retransmits an individual data segment (non-connect segment) before the connection is aborted. The retransmission time-out is doubled with each successive retransmission on a connection. It is reset when responses resume. The base time-out value is dynamically determined by the measured round-trip time on the connection.

Solution

Make sure 'MSS: (TcpMaxDataRetransmissions IPv6)' is Enabled and set to 3.

See Also

https://workbench.cisecurity.org/files/1941

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7, CCE|CCE-37846-3, CSCv6|9

Plugin: Windows

Control ID: 1b27171640ead9fdd3bda417f605a695c159799826f0c29e726a1a8913175708