800-53|SC-5

Title

DENIAL OF SERVICE PROTECTION

Description

The information system protects against or limits the effects of the following types of denial of service attacks: [Assignment: organization-defined types of denial of service attacks or references to sources for such information] by employing [Assignment: organization-defined security safeguards].

Supplemental

A variety of technologies exist to limit, or in some cases, eliminate the effects of denial of service attacks. For example, boundary protection devices can filter certain types of packets to protect information system components on internal organizational networks from being directly affected by denial of service attacks. Employing increased capacity and bandwidth combined with service redundancy may also reduce the susceptibility to denial of service attacks.

Reference Item Details

Related: SC-6,SC-7

Category: SYSTEM AND COMMUNICATIONS PROTECTION

Family: SYSTEM AND COMMUNICATIONS PROTECTION

Priority: P1

Baseline Impact: LOW,MODERATE,HIGH

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.1 Set 'Maximum send size - connector level' to '10240'WindowsCIS Microsoft Exchange Server 2013 Edge v1.1.0
1.1 Set 'Maximum send size - connector level' to '10240'WindowsCIS Microsoft Exchange Server 2016 Edge v1.0.0
1.1 VCEM-80-000001UnixCIS VMware vSphere 8.0 vCenter Appliance ESX Agent Manager EAM STIG v1.0.0 CAT II
1.1 VCLU-80-000001UnixCIS VMware vSphere 8.0 vCenter Appliance Lookup Service STIG v1.0.0 CAT II
1.1 VCPF-80-000001UnixCIS VMware vSphere 8.0 vCenter Appliance Perfcharts STIG v1.0.0 CAT II
1.1 VCST-80-000001UnixCIS VMware vSphere 8.0 vCenter Appliance Secure Token Service STS STIG v1.0.0 CAT II
1.1 VCUI-80-000001UnixCIS VMware vSphere 8.0 vCenter Appliance User Interface UI STIG v1.0.0 CAT II
1.1.37 Ensure that the --request-timeout argument is set as appropriateUnixCIS Kubernetes 1.8 Benchmark v1.2.0 L1
1.1.38 Ensure that the --request-timeout argument is set as appropriateUnixCIS Kubernetes 1.11 Benchmark v1.3.0 L1
1.2 Set 'Maximum receive size - organization level' to '10240'WindowsCIS Microsoft Exchange Server 2013 Hub v1.1.0
1.2 Set 'Maximum receive size - organization level' to '10240'WindowsCIS Microsoft Exchange Server 2016 Hub v1.0.0
1.2.1.2 Configure 'Minimize the number of simultaneous connections to the Internet or a Windows DomainWindowsCIS Windows 8 L1 v1.0.0
1.10 CISC-L2-000130CiscoCIS Cisco NX OS Switch L2S STIG v1.0.0 CAT II
1.10 CISC-L2-000150CiscoCIS Cisco IOS Switch L2S STIG v1.0.0 CAT II
1.10 CISC-L2-000150CiscoCIS Cisco IOS XE Switch L2S STIG v1.0.0 CAT II
1.10 CISC-RT-000160CiscoCIS Cisco NX OS Switch RTR STIG v1.0.0 CAT III
1.10 CISC-RT-000190CiscoCIS Cisco IOS XE Router RTR STIG v1.1.0 CAT II
1.10 CISC-RT-000190CiscoCIS Cisco IOS XR Router RTR STIG v1.0.0 CAT II
1.10 CISC-RT-000190CiscoCIS Cisco IOS XE Switch RTR STIG v1.1.0 CAT II
1.11 CISC-L2-000140CiscoCIS Cisco NX OS Switch L2S STIG v1.0.0 CAT II
1.11 CISC-RT-000170CiscoCIS Cisco NX OS Switch RTR STIG v1.0.0 CAT II
1.12 CISC-L2-000150CiscoCIS Cisco NX OS Switch L2S STIG v1.0.0 CAT II
1.12 CISC-RT-000190CiscoCIS Cisco NX OS Switch RTR STIG v1.0.0 CAT II
1.12 VCLD-80-000060UnixCIS VMware vSphere 8.0 vCenter Appliance Management Interface VAMI STIG v1.0.0 CAT II
1.17 Set 'Maximum send size - organization level' to '10240'WindowsCIS Microsoft Exchange Server 2016 Hub v1.0.0
1.17 Set 'Maximum send size - organization level' to '10240'WindowsCIS Microsoft Exchange Server 2013 Hub v1.1.0
1.18 CISC-RT-000310CiscoCIS Cisco NX OS Switch RTR STIG v1.0.0 CAT I
1.18 Set 'Maximum receive size - connector level' to '10240'WindowsCIS Microsoft Exchange Server 2016 Hub v1.0.0
1.18 Set 'Maximum receive size - connector level' to '10240'WindowsCIS Microsoft Exchange Server 2013 Hub v1.1.0
1.19 VCSA-80-000110VMwareCIS VMware vSphere 8.0 vCenter STIG v1.0.0 CAT II
1.20 EX19-ED-000109WindowsCIS Microsoft Exchange 2019 Edge Server STIG v1.0.0 CAT II
1.21 EX19-ED-000110WindowsCIS Microsoft Exchange 2019 Edge Server STIG v1.0.0 CAT II
1.22 CISC-RT-000310CiscoCIS Cisco IOS XE Switch RTR STIG v1.1.0 CAT I
1.22 EX19-ED-000111WindowsCIS Microsoft Exchange 2019 Edge Server STIG v1.0.0 CAT II
1.100 WN16-CC-000070WindowsCIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT III
1.100 WN16-CC-000070WindowsCIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT III
1.100 WN19-CC-000060WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT III
1.100 WN19-CC-000060WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT III
1.100 WN22-CC-000060WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT III
1.100 WN22-CC-000060WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT III
1.104 WN10-CC-000035WindowsCIS Microsoft Windows 10 STIG v1.0.0 CAT III
1.110 UBTU-24-600190UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.111 UBTU-24-600200UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.119 RHEL-10-400160UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.146 WN10-CC-000220WindowsCIS Microsoft Windows 10 STIG v1.0.0 CAT III
1.165 RHEL-09-251030UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.182 RHEL-09-253010UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.188 AZLX-23-002605UnixCIS Amazon Linux 2023 STIG v1.0.0 CAT II
1.210 SOL-11.1-090280UnixCIS Solaris 11 X86 STIG v1.0.0 CAT II
1.211 SOL-11.1-090280UnixCIS Solaris 11 SPARC STIG v1.0.0 CAT II