NET0770 - The router must have IP source routing disabled.

Information

Source routing is a feature of IP, whereby individual packets can specify routes. This feature is used in several different network attacks by bypassing perimeter and internal defense mechanisms.

Solution

Configure the router to disable IP source routing.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Network_Infrastructure_Router_L3_Switch_V8R29_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5, CAT|II, Rule-ID|SV-15317r2_rule, STIG-ID|NET0770, Vuln-ID|V-3081

Plugin: Juniper

Control ID: f653fa512263ad0f6156a87a3735f784131d30c58a5dc243a9690279265dd30c