STIGQter STIGQter: STIG Summary: HP FlexFabric Switch RTR Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 24 Jul 2020:

The HP FlexFabric Switch must be configured to disable non-essential capabilities.

DISA Rule

SV-80597r1_rule

Vulnerability Number

V-66107

Group Title

SRG-NET-000131-RTR-000035

Rule Version

HFFS-RT-000006

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Disable unsecure protocols and services on the HP FlexFabric Switch:

[HP] undo ftp server enable
[HP] undo telnet server enable

Note: By default, both FTP and Telnet services are disabled.

Check Contents

Review the configuration to verify that non-essential services are not enabled, if these services are enabled, this is a finding:

[HP] display ftp-server
FTP is not configured.

[HP] display current-configuration | include telnet

Note: When Telnet server is enabled, the output for this command is telnet server enable.

Vulnerability Number

V-66107

Documentable

False

Rule Version

HFFS-RT-000006

Severity Override Guidance

Review the configuration to verify that non-essential services are not enabled, if these services are enabled, this is a finding:

[HP] display ftp-server
FTP is not configured.

[HP] display current-configuration | include telnet

Note: When Telnet server is enabled, the output for this command is telnet server enable.

Check Content Reference

M

Target Key

2979

Comments