STIGQter STIGQter: STIG Summary: Layer 2 Switch Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 01 Apr 2026:

The layer 2 switch, when transferring information between different security domains, must apply the same security policy filtering to metadata as it applies to data payloads.

DISA Rule

SV-278985r1137780_rule

Vulnerability Number

V-278985

Group Title

SRG-NET-000328

Rule Version

SRG-NET-000328-L2S-000043

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the layer 2 switch to apply the same security policy filtering to metadata as it applies to data payloads, when transferring information between different security domains.

Check Contents

Verify the layer 2 switch is configured to apply the same security policy filtering to metadata as it applies to data payloads, when transferring information between different security domains.

If the layer 2 switch does apply the same security policy filtering to metadata as it applies to data payloads, when transferring information between different security domains, this is a finding.

Vulnerability Number

V-278985

Documentable

False

Rule Version

SRG-NET-000328-L2S-000043

Severity Override Guidance

Verify the layer 2 switch is configured to apply the same security policy filtering to metadata as it applies to data payloads, when transferring information between different security domains.

If the layer 2 switch does apply the same security policy filtering to metadata as it applies to data payloads, when transferring information between different security domains, this is a finding.

Check Content Reference

M

Target Key

2913