18.4.10 Ensure 'MSS: (TcpMaxDataRetransmissions IPv6) How many times unacknowledged data is retransmitted' is set to 'Enabled: 3'

Information

This setting controls the number of times that TCP retransmits an individual data segment (non-connect segment) before the connection is aborted. The retransmission time-out is doubled with each successive retransmission on a connection. It is reset when responses resume. The base time-out value is dynamically determined by the measured round-trip time on the connection.

Solution

Make sure 'MSS: (TcpMaxDataRetransmissions IPv6)' is Enabled and set to 3.

See Also

https://workbench.cisecurity.org/files/1941

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7, CCE|CCE-37846-3, CSCv6|9

Plugin: Windows

Control ID: b1b5774829e04dfa04d1f432f398421416aaf5ea23d6ed0e179f8da28a0750d8