3.16 Set Maximum Number of Incoming Connections - current tcp = 1024

Information

This setting controls the maximum number of incoming connections that can be accepted
on a TCP port.

Note that the value of 1024 is a minimum to establish a good security posture for this
setting. In environments where connections numbers are high, such as a busy webserver,
this value may need to be increased.

Solution

To enforce this setting, use the command-# ipadm set-prop -p _conn_req_max_q=1024 tcp

See Also

https://workbench.cisecurity.org/files/616

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv6|9.2

Plugin: Unix

Control ID: 87b574c76d2b533b8ac9ca14b849050aa0e8cf52f86c791b867dbbb2e71218de