STIGQter STIGQter: STIG Summary: VMware vRealize Automation 7.x SLES Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Sep 2018:

Proxy Neighbor Discovery Protocol (NDP) must not be enabled on the system.

DISA Rule

SV-100331r1_rule

Vulnerability Number

V-89681

Group Title

SRG-OS-000096-GPOS-00050

Rule Version

VRAU-SL-000655

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Disable proxy NDP on the system.

Check Contents

Note: For Appliance OS, proxy_ndp is disabled by default and this is not a finding.

Determine if the system is configured for proxy NDP, and if it is enabled:

more /proc/sys/net/ipv6/conf/*/proxy_ndp

If the file is not found, the kernel is not configured for proxy NDP, and this is not a finding.

If the file has a value of "0", proxy NDP is not enabled, and this is not a finding.

If the file has a value of "1", proxy NDP is enabled, and this is a finding.

Vulnerability Number

V-89681

Documentable

False

Rule Version

VRAU-SL-000655

Severity Override Guidance

Note: For Appliance OS, proxy_ndp is disabled by default and this is not a finding.

Determine if the system is configured for proxy NDP, and if it is enabled:

more /proc/sys/net/ipv6/conf/*/proxy_ndp

If the file is not found, the kernel is not configured for proxy NDP, and this is not a finding.

If the file has a value of "0", proxy NDP is not enabled, and this is not a finding.

If the file has a value of "1", proxy NDP is enabled, and this is a finding.

Check Content Reference

M

Target Key

3459

Comments