SV-220435r622190_rule
V-220435
SRG-NET-000362-RTR-000115
CISC-RT-000190
CAT II
10
Disable ICMP redirects on all external interfaces as shown in the example below:
SW1(config)#int g0/1
SW1(config-if)#no ip redirects
Review the switch configuration to verify that the no ip redirects command has been configured on all external interfaces as shown in the example below:
interface GigabitEthernet0/1
ip address x.x.x.x 255.255.255.0
no ip redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
V-220435
False
CISC-RT-000190
Review the switch configuration to verify that the no ip redirects command has been configured on all external interfaces as shown in the example below:
interface GigabitEthernet0/1
ip address x.x.x.x 255.255.255.0
no ip redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
M
4065