ScreenOS:DMZ Interface - Path MTU

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

You should only allow secure services or services that can disclose information from trusted interfaces. Access to management services such as SSL and SSH, for example, should only be active when necessary. Setting Path MTU discovery on the interface will assist in determining the maximum packet size to reduce the need for fragmentation and improve throughput performance.

NOTE: You will need to change 'DMZ_Interface' to the appropriate interface for your organization.

Solution

You may navigate to the following ScreenOS menu location: Network > Interfaces. Once there you can select the appropriate interface to further edit settings.

See Also

https://www.juniper.net/techpubs/en_US/screenos6.3.0/information-products/pathway-pages/screenos/index.html

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7

Plugin: Juniper

Control ID: 1b750a1828e56777617cf72d7f3257eabc23f328367f387b58e9ee62b4f91d3d