SV-207113r604135_rule
V-207113
SRG-NET-000019
SRG-NET-000019-RTR-000008
CAT I
10
This requirement is not applicable for the DoDIN Backbone.
Configure the ingress filter of the perimeter router connected to an alternate gateway to only permit packets with destination addresses of the site's NIPRNet address space or a destination address belonging to the address block assigned by the alternate gateway network service provider.
This requirement is not applicable for the DoDIN Backbone.
Review the configuration of each router interface connecting to an alternate gateway.
Verify each permit statement of the ingress filter only permits packets with destination addresses of the site's NIPRNet address space or a destination address belonging to the address block assigned by the alternate gateway network service provider.
If the ingress filter permits packets with addresses other than those specified, such as destination addresses of the site's NIPRNet address space or a destination address belonging to the address block assigned by the alternate gateway network service provider, this is a finding.
V-207113
False
SRG-NET-000019-RTR-000008
This requirement is not applicable for the DoDIN Backbone.
Review the configuration of each router interface connecting to an alternate gateway.
Verify each permit statement of the ingress filter only permits packets with destination addresses of the site's NIPRNet address space or a destination address belonging to the address block assigned by the alternate gateway network service provider.
If the ingress filter permits packets with addresses other than those specified, such as destination addresses of the site's NIPRNet address space or a destination address belonging to the address block assigned by the alternate gateway network service provider, this is a finding.
M
2917