SV-216748r531087_rule
V-216748
SRG-NET-000362-RTR-000115
CISC-RT-000190
CAT II
10
Disable ICMP redirects on all external interfaces as shown in the example below.
RP/0/0/CPU0:R3(config)#int g0/0/0/1
RP/0/0/CPU0:R3(config-if)#no ipv4 redirects
Review the router configuration to verify that ipv4 redirects command has not been configured on any external interface as shown in the example below.
interface GigabitEthernet0/0/0/1
ipv4 address x.11.1.2 255.255.255.252
ipv4 redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
V-216748
False
CISC-RT-000190
Review the router configuration to verify that ipv4 redirects command has not been configured on any external interface as shown in the example below.
interface GigabitEthernet0/0/0/1
ipv4 address x.11.1.2 255.255.255.252
ipv4 redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
M
4029