SV-216529r531088_rule
V-216529
SRG-APP-000142-NDM-000245
CISC-ND-000470
CAT I
10
Disable the following services if enabled as shown in the example below.
RP/0/0/CPU0:R3(config)#no service ipv4 tcp-small-servers
RP/0/0/CPU0:R3(config)#no service ipv4 udp-small-servers
RP/0/0/CPU0:R3(config)#no http client vrf xxxxx
RP/0/0/CPU0:R3(config)#no telnet ipv4 server
Verify that the router does not have any unnecessary or non-secure ports, protocols and services enabled. For example, the following commands should not be in the configuration:
service ipv4 tcp-small-servers max-servers 10
service ipv4 udp-small-servers max-servers 10
http client vrf xxxxx
telnet vrf default ipv4 server max-servers 1
If any unnecessary or non-secure ports, protocols, or services are enabled, this is a finding.
V-216529
False
CISC-ND-000470
Verify that the router does not have any unnecessary or non-secure ports, protocols and services enabled. For example, the following commands should not be in the configuration:
service ipv4 tcp-small-servers max-servers 10
service ipv4 udp-small-servers max-servers 10
http client vrf xxxxx
telnet vrf default ipv4 server max-servers 1
If any unnecessary or non-secure ports, protocols, or services are enabled, this is a finding.
M
4023