SV-216567r531085_rule
V-216567
SRG-NET-000362-RTR-000115
CISC-RT-000190
CAT II
10
Disable ICMP redirects on all external interfaces as shown in the example below.
R4(config)#int g0/1
R4(config-if)#no ip redirects
Review the router configuration to verify that the no ip redirects command has been configured on all external interfaces as shown in the example below.
interface GigabitEthernet0/1
ip address x.x.x.x 255.255.255.0
no ip redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
V-216567
False
CISC-RT-000190
Review the router configuration to verify that the no ip redirects command has been configured on all external interfaces as shown in the example below.
interface GigabitEthernet0/1
ip address x.x.x.x 255.255.255.0
no ip redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
M
4027