CSCv6|11

Title

Secure Configurations for Network Devices

Description

Secure Configurations for Network Devices

Reference Item Details

Category: Secure Configurations for Network Devices

Family: Network

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.6.1 Ensure 'Verify Update Server Identity' is enabledPalo_AltoCIS Palo Alto Firewall 7 Benchmark L1 v1.0.0
1.6.1 Ensure 'Verify Update Server Identity' is enabledPalo_AltoCIS Palo Alto Firewall 6 Benchmark L1 v1.0.0
1.6.1 Ensure 'Verify Update Server Identity' is enabledPalo_AltoCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0
3.1 Ensure a fully-synchronized High Availability peer is configuredPalo_AltoCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0
3.1.1 Ensure IP forwarding is disabled - ipv4 /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Workstation L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv4 /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Server L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv4 sysctlUnixCIS Debian 8 Server L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv4 sysctlUnixCIS Debian 8 Workstation L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv6 /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Workstation L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv6 /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Server L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv6 sysctlUnixCIS Debian 8 Workstation L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - ipv6 sysctlUnixCIS Debian 8 Server L1 v2.0.2
3.1.1 Ensure IP forwarding is disabled - sysctl ipv4UnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl ipv4UnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl ipv6UnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl ipv6UnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl.conf ipv4UnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl.conf ipv4UnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl.conf ipv6UnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled - sysctl.conf ipv6UnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.1 Ensure IP forwarding is disabled (sysctl exec)UnixCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0
3.1.1 Ensure IP forwarding is disabled (sysctl exec)UnixCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0
3.1.1 Ensure IP forwarding is disabled (sysctl.conf/sysctl.d)UnixCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0
3.1.1 Ensure IP forwarding is disabled (sysctl.conf/sysctl.d)UnixCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.all.send_redirects = 0'UnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.all.send_redirects = 0'UnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.all.send_redirects' (sysctl.conf/sysctl.d)UnixCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.all.send_redirects' (sysctl.conf/sysctl.d)UnixCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.default.send_redirects = 0'UnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.default.send_redirects = 0'UnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.default.send_redirects' (sysctl.conf/sysctl.d)UnixCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'net.ipv4.conf.default.send_redirects' (sysctl.conf/sysctl.d)UnixCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'sysctl net.ipv4.conf.all.send_redirects'UnixCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'sysctl net.ipv4.conf.all.send_redirects'UnixCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'sysctl net.ipv4.conf.default.send_redirects'UnixCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - 'sysctl net.ipv4.conf.default.send_redirects'UnixCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0
3.1.2 Ensure packet redirect sending is disabled - all /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Server L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - all /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Workstation L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - all sysctlUnixCIS Debian 8 Workstation L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - all sysctlUnixCIS Debian 8 Server L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - default /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Workstation L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - default /etc/sysctl.conf /etc/sysctl.d/*UnixCIS Debian 8 Server L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - default sysctlUnixCIS Debian 8 Workstation L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - default sysctlUnixCIS Debian 8 Server L1 v2.0.2
3.1.2 Ensure packet redirect sending is disabled - sysctl net.ipv4.conf.default.send_redirectsUnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - sysctl net.ipv4.conf.default.send_redirectsUnixCIS Distribution Independent Linux Server L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - systctl net.ipv4.conf.all.send_redirectsUnixCIS Distribution Independent Linux Workstation L1 v2.0.0
3.1.2 Ensure packet redirect sending is disabled - systctl net.ipv4.conf.all.send_redirectsUnixCIS Distribution Independent Linux Server L1 v2.0.0
3.2 Ensure 'High Availability' requires Link Monitoring and/or Path MonitoringPalo_AltoCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0
3.2 Ensure 'High Availability' requires Link Monitoring and/or Path Monitoring - Link Monitoring Failure ConditionPalo_AltoCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0