SV-221085r622190_rule
V-221085
SRG-NET-000362-RTR-000115
CISC-RT-000190
CAT II
10
Disable ICMP redirects on all external interfaces as shown in the example below:
SW1(config)# int e2/7
SW1(config-if)# no ip redirects
Review the switch configuration to verify that the no ip redirects command has been configured on all external interfaces as shown in the example below:
interface Ethernet2/7
no switchport
ip address x.22.4.2/30
no ip redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
V-221085
False
CISC-RT-000190
Review the switch configuration to verify that the no ip redirects command has been configured on all external interfaces as shown in the example below:
interface Ethernet2/7
no switchport
ip address x.22.4.2/30
no ip redirects
If ICMP Redirect messages are enabled on any external interfaces, this is a finding.
M
4075