SV-266261r1024579_rule
V-266261
SRG-NET-000202-FW-000039
F5BI-FW-300020
CAT I
10
From the BIG-IP GUI:
1. Security.
2. Options.
3. Network Firewall.
4. Firewall Options.
5. Set "Virtual Server & Self IP Contexts" to "Drop" or "Reject".
6. Set "Global Context" to "Drop" or "Reject".
7. Update.
From the BIG-IP GUI:
1. Security.
2. Options.
3. Network Firewall.
4. Firewall Options.
5. Verify "Virtual Server & Self IP Contexts" is set to "Drop" or "Reject".
6. Verify "Global Context" is set to "Drop" or "Reject".
If the BIG-IP appliance is not configured to deny network communications traffic by default and allow network communications traffic by exception, this is a finding.
V-266261
False
F5BI-FW-300020
From the BIG-IP GUI:
1. Security.
2. Options.
3. Network Firewall.
4. Firewall Options.
5. Verify "Virtual Server & Self IP Contexts" is set to "Drop" or "Reject".
6. Verify "Global Context" is set to "Drop" or "Reject".
If the BIG-IP appliance is not configured to deny network communications traffic by default and allow network communications traffic by exception, this is a finding.
M
5641