3.14 Disable TCP Reverse IP Source Routing - current tcp = 0

Information

This setting controls whether TCP reverses the IP source routing option for incoming connections.

If IP source routing is needed for diagnostic purposes, enable it. Otherwise disable it.

Solution

To enforce this setting, use the command:
# ipadm set-prop -p _rev_src_routes=0 tcp

See Also

https://workbench.cisecurity.org/files/612

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv6|9.2

Plugin: Unix

Control ID: bbc5ddf02b5bf7b518f794a59b05b89d8b8fb6b7a368353ea3081e2a8756180b