SOL-11.1-050120 - The system must set maximum number of incoming connections to 1024.

Information

This setting controls the maximum number of incoming connections that can be accepted on a TCP port limiting exposure to denial of service attacks.

Solution

The Network Management profile is required.

Configure maximum number of incoming connections.

# pfexec ipadm set-prop -p _conn_req_max_q=1024 tcp

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-216379r959010_rule, STIG-ID|SOL-11.1-050120, STIG-Legacy|SV-61083, STIG-Legacy|V-48211, Vuln-ID|V-216379

Plugin: Unix

Control ID: a0ead845ed7321ee13e7f2c7247750508bd0a1426f916e50073e98f02fbc63d0