STIGQter STIGQter: STIG Summary: Layer 2 Switch Security Requirements Guide Version: 1 Release: 6 Benchmark Date: 24 Jan 2020:

The layer 2 switch must have STP Loop Guard enabled on all non-designated STP switch ports.

DISA Rule

SV-76667r1_rule

Vulnerability Number

V-62177

Group Title

SRG-NET-000362

Rule Version

SRG-NET-000362-L2S-000023

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the switch to have STP Loop Guard enabled globally or at a minimum on all non-designated STP switch ports.

Check Contents

Review the switch configuration to verify that STP Loop Guard is enabled.

If STP Loop Guard is not configured globally or on non-designated STP ports, this is a finding.

Vulnerability Number

V-62177

Documentable

False

Rule Version

SRG-NET-000362-L2S-000023

Severity Override Guidance

Review the switch configuration to verify that STP Loop Guard is enabled.

If STP Loop Guard is not configured globally or on non-designated STP ports, this is a finding.

Check Content Reference

M

Target Key

2917

Comments