STIGQter STIGQter: STIG Summary: Nokia Service Router OS 25.x Router Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Apr 2026:

The Nokia Multiprotocol Label Switching (MPLS) router must be configured to use its loopback address as the source address for Label Distribution Protocol (LDP) peering sessions.

DISA Rule

SV-283832r1203745_rule

Vulnerability Number

V-283832

Group Title

SRG-NET-000512-RTR-000002

Rule Version

NOKI-RT-000140

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure MPLS routers to use their loopback address as the source address for LDP peering sessions.

Note: By default, the Nokia router uses the system/loopback address as the source for LDP peering sessions. Ensure the system address is configured.

Configure the system address, as shown in the example below:

- configure router interface system address 3.3.3.3/32

Check Contents

Review the router configuration to determine if it uses its loopback address as the source address for LDP peering sessions.

Verify a loopback address has been configured, as shown in the following example:

- show router ldp discovery detail | match "Local Address"
Local Address : 3.3.3.3:0

If the router is not configured to use its loopback address for LDP peering, this is a finding.

Vulnerability Number

V-283832

Documentable

False

Rule Version

NOKI-RT-000140

Severity Override Guidance

Review the router configuration to determine if it uses its loopback address as the source address for LDP peering sessions.

Verify a loopback address has been configured, as shown in the following example:

- show router ldp discovery detail | match "Local Address"
Local Address : 3.3.3.3:0

If the router is not configured to use its loopback address for LDP peering, this is a finding.

Check Content Reference

M

Target Key

5746