SOL-11.1-050010 - The system must disable directed broadcast packet forwarding.

Information

This parameter must be disabled to reduce the risk of denial of service attacks.

Solution

The Network Management profile is required.

Disable directed broadcast packet forwarding.

# pfexec ipadm set-prop -p _forward_directed_broadcasts=0 ip

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-216368r959010_rule, STIG-ID|SOL-11.1-050010, STIG-Legacy|SV-61037, STIG-Legacy|V-48165, Vuln-ID|V-216368

Plugin: Unix

Control ID: 37df6a7e4936506849364f21a80cc57da215fe130f7c953766f741e133f699e3