STIGQter STIGQter: STIG Summary: Layer 2 Switch Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 01 Apr 2026:

The layer 2 switch must not have any switch ports assigned to the native VLAN.

DISA Rule

SV-206672r385561_rule

Vulnerability Number

V-206672

Group Title

SRG-NET-000512

Rule Version

SRG-NET-000512-L2S-000013

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure all access switch ports to a VLAN other than the native VLAN.

Check Contents

Review the switch configurations and examine all access switch ports. Verify that they do not belong to the native VLAN.

If any access switch ports have been assigned to the same VLAN ID as the native VLAN, this is a finding.

Vulnerability Number

V-206672

Documentable

False

Rule Version

SRG-NET-000512-L2S-000013

Severity Override Guidance

Review the switch configurations and examine all access switch ports. Verify that they do not belong to the native VLAN.

If any access switch ports have been assigned to the same VLAN ID as the native VLAN, this is a finding.

Check Content Reference

M

Target Key

2913