SV-227911r603266_rule
V-227911
SRG-OS-000480
GEN005580
CAT II
10
Ensure only authorized software is loaded on a designated router. Authorized software will be limited to the most current version of routing protocols and SSH for system administration purposes.
Ask the SA if the system is a designated router. If it is not, this is not applicable.
Check the system for non-routing network services.
Procedure:
# netstat -a | grep -i listen
# ps -ef
If non-routing services, including Web servers, file servers, DNS servers, or applications servers, but excluding management services, such as SSH and SNMP, are running on the system, this is a finding.
V-227911
False
GEN005580
Ask the SA if the system is a designated router. If it is not, this is not applicable.
Check the system for non-routing network services.
Procedure:
# netstat -a | grep -i listen
# ps -ef
If non-routing services, including Web servers, file servers, DNS servers, or applications servers, but excluding management services, such as SSH and SNMP, are running on the system, this is a finding.
M
4061