Network Security - Enable the default-address-selection option

Information

Use the default-address-selection CLI option to instruct the routing engine to use the loopback interface (lo0) as the source address for all locally generated IP packets when the packet is sent through a routed interface.

Solution

Configure the default-address-selection on the system.

user@host# edit system
user@host# set default-address-selection

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Juniper

Control ID: 6cf7934701a016e0231da189dded2a1986d6973cc9cfaf9d8e98124421844ea1