GEN005580 - A system used for routing must not run other network services or applications.

Information

Installing extraneous software on a system designated as a dedicated router poses a security threat to the system and the network. Should an attacker gain access to the router through the unauthorized software, the entire network is susceptible to malicious activity.
NOTE: Nessus has not performed this query, and this check is only provided for informational purposes.

Solution

Ensure only authorized software is loaded on a designated router. Authorized software will be limited to the most current version of routing protocols and SSH for system administration purposes.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001208, Group-ID|V-4398, Rule-ID|SV-37924r2_rule, STIG-ID|GEN005580

Plugin: Unix

Control ID: 5b04fb59d0ebc58f7f730feea9eb7cc17df8da4f1f1ab84588516a1b1c3c9188