Audits
Settings
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Theme
Light
Dark
Auto
Help
Plugins
Overview
Plugins Pipeline
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Release Notes
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Settings
Theme
Light
Dark
Auto
Detections
Plugins
Overview
Plugins Pipeline
Release Notes
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Analytics
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Audits
References
CCI
CCI-001551
CCI
CCI|CCI-001551
Title
The organization defines approved authorizations for controlling the flow of information between interconnected systems.
Reference Item Details
Reference:
CCI - DISA Control Correlation Identifier
Category:
2024
Audit Items
View all Reference Audit Items
Name
Plugin
Audit Name
GEN003600 - The system must not forward IPv4 source-routed packets - 'net.ipv4.conf.all.accept_source_route'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003600 - The system must not forward IPv4 source-routed packets - 'net.ipv4.conf.all.accept_source_route'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003600 - The system must not forward IPv4 source-routed packets - 'net.ipv4.conf.default.accept_source_route'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003600 - The system must not forward IPv4 source-routed packets - 'net.ipv4.conf.default.accept_source_route'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003600 - The system must not forward IPv4 source-routed packets.
Unix
DISA STIG AIX 6.1 v1r14
GEN003600 - The system must not forward IPv4 source-routed packets.
Unix
DISA STIG AIX 5.3 v1r2
GEN003602 - The system must not process ICMP timestamp requests.
Unix
DISA STIG AIX 6.1 v1r14
GEN003602 - The system must not process ICMP timestamp requests.
Unix
DISA STIG AIX 5.3 v1r2
GEN003602 - The system must not process Internet Control Message Protocol (ICMP) timestamp requests - 'timestamp-reply -j DROP'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003602 - The system must not process Internet Control Message Protocol (ICMP) timestamp requests - 'timestamp-request -j DROP'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003602 - The system must not process Internet Control Message Protocol (ICMP) timestamp requests - 'timestamp-reply -j DROP'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003602 - The system must not process Internet Control Message Protocol (ICMP) timestamp requests - 'timestamp-request -j DROP'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003603 - The system must not respond to ICMPv4 echoes sent to a broadcast address.
Unix
DISA STIG AIX 5.3 v1r2
GEN003603 - The system must not respond to ICMPv4 echoes sent to a broadcast address.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003603 - The system must not respond to ICMPv4 echoes sent to a broadcast address.
Unix
DISA STIG AIX 6.1 v1r14
GEN003603 - The system must not respond to Internet Control Message Protocol v4 (ICMPv4) echoes sent to a broadcast address.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003604 - The system must not respond to ICMP timestamp requests sent to a broadcast address.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003604 - The system must not respond to ICMP timestamp requests sent to a broadcast address.
Unix
DISA STIG AIX 5.3 v1r2
GEN003604 - The system must not respond to ICMP timestamp requests sent to a broadcast address.
Unix
DISA STIG AIX 6.1 v1r14
GEN003604 - The system must not respond to Internet Control Message Protocol (ICMP) timestamp requests sent to a broadcast address.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003605 - The system must not apply reversed source routing to TCP responses.
Unix
DISA STIG AIX 5.3 v1r2
GEN003605 - The system must not apply reversed source routing to TCP responses.
Unix
DISA STIG AIX 6.1 v1r14
GEN003606 - The system must prevent local applications from generating source-routed packets.
Unix
DISA STIG AIX 6.1 v1r14
GEN003606 - The system must prevent local applications from generating source-routed packets.
Unix
DISA STIG AIX 5.3 v1r2
GEN003607 - The system must not accept source-routed IPv4 packets - 'net.ipv4.conf.all.accept_source_route'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003607 - The system must not accept source-routed IPv4 packets - 'net.ipv4.conf.all.accept_source_route'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003607 - The system must not accept source-routed IPv4 packets - 'net.ipv4.conf.default.accept_source_route'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003607 - The system must not accept source-routed IPv4 packets - 'net.ipv4.conf.default.accept_source_route'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003607 - The system must not accept source-routed IPv4 packets.
Unix
DISA STIG AIX 5.3 v1r2
GEN003607 - The system must not accept source-routed IPv4 packets.
Unix
DISA STIG AIX 6.1 v1r14
GEN003608 - Proxy Address Resolution Protocol (Proxy ARP) must not be enabled on the system.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003608 - Proxy ARP must not be enabled on the system.
Unix
DISA STIG AIX 5.3 v1r2
GEN003608 - Proxy ARP must not be enabled on the system.
Unix
DISA STIG AIX 6.1 v1r14
GEN003608 - Proxy ARP must not be enabled on the system.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003609 - The system must ignore IPv4 ICMP redirect messages - 'net.ipv4.conf.all.accept_redirects'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003609 - The system must ignore IPv4 ICMP redirect messages - 'net.ipv4.conf.default.accept_redirects'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003609 - The system must ignore IPv4 ICMP redirect messages.
Unix
DISA STIG AIX 6.1 v1r14
GEN003609 - The system must ignore IPv4 ICMP redirect messages.
Unix
DISA STIG AIX 5.3 v1r2
GEN003609 - The system must ignore IPv4 Internet Control Message Protocol (ICMP) redirect messages - 'net.ipv4.conf.all.accept_redirects'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003609 - The system must ignore IPv4 Internet Control Message Protocol (ICMP) redirect messages - 'net.ipv4.conf.default.accept_redirects'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003610 - The system must not send IPv4 ICMP redirects - 'net.ipv4.conf.all.send_redirects'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003610 - The system must not send IPv4 ICMP redirects - 'net.ipv4.conf.default.send_redirects'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003610 - The system must not send IPv4 ICMP redirects.
Unix
DISA STIG AIX 5.3 v1r2
GEN003610 - The system must not send IPv4 ICMP redirects.
Unix
DISA STIG AIX 6.1 v1r14
GEN003610 - The system must not send IPv4 Internet Control Message Protocol (ICMP) redirects - 'net.ipv4.conf.all.send_redirects'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003610 - The system must not send IPv4 Internet Control Message Protocol (ICMP) redirects - 'net.ipv4.conf.default.send_redirects'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003619 - The system must not be configured for network bridging.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003619 - The system must not be configured for network bridging.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003860 - The system must not have the finger service active.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN003860 - The system must not have the finger service active.
Unix
DISA STIG AIX 6.1 v1r14