SV-221095r622190_rule
V-221095
SRG-NET-000205-RTR-000015
CISC-RT-000350
CAT II
10
Configure the switch to drop all packets with IP option source routing.
SW1(config)# no ip source-route
SW1(config)# end
In Cisco NX-OS, all packets with any header option other than the “source-route” header option are dropped. By default, ipv4 source routing is enabled. Verify that source routing is disabled via the following command:
no ip source-route
If the switch is not configured to drop all packets with IP option source routing, this is a finding.
V-221095
False
CISC-RT-000350
In Cisco NX-OS, all packets with any header option other than the “source-route” header option are dropped. By default, ipv4 source routing is enabled. Verify that source routing is disabled via the following command:
no ip source-route
If the switch is not configured to drop all packets with IP option source routing, this is a finding.
M
4075