STIGQter STIGQter: STIG Summary: Layer 2 Switch Security Requirements Guide Version: 1 Release: 6 Benchmark Date: 24 Jan 2020:

The layer 2 switch must have IGMP or MLD Snooping configured on all VLANs

DISA Rule

SV-105019r1_rule

Vulnerability Number

V-95881

Group Title

SRG-NET-000512

Rule Version

SRG-NET-000512-L2S-000002

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure IGMP or MLD snooping for IPv4 and IPv6 multicast traffic respectively for each VLAN.

Check Contents

Review the switch configuration to verify that IGMP or MLD snooping has been configured for IPv4 and IPv6 multicast traffic respectively.

If the switch is not configured to implement IGMP or MLD snooping for each VLAN, this is a finding.

Vulnerability Number

V-95881

Documentable

False

Rule Version

SRG-NET-000512-L2S-000002

Severity Override Guidance

Review the switch configuration to verify that IGMP or MLD snooping has been configured for IPv4 and IPv6 multicast traffic respectively.

If the switch is not configured to implement IGMP or MLD snooping for each VLAN, this is a finding.

Check Content Reference

M

Target Key

2917

Comments