SV-82537r1_rule
V-68047
SRG-APP-000142-NDM-000245
AADC-NM-000046
CAT II
10
The following command disables ping, SSH, Telnet, HTTP, HTTPS, and SNMP to a range of interfaces:
no enable-management service all ethernet [number] to [number]
Note: Ping may be used on inward-facing interfaces.
Review the device configuration.
The following command displays the types of management access allowed on each of the device's interfaces:
show management
If SSH, Telnet, HTTP, HTTPS, or SNMP is "on" for any of the interfaces other than the management interface, this is a finding.
Note: Ping may be used on inward-facing interfaces.
V-68047
False
AADC-NM-000046
Review the device configuration.
The following command displays the types of management access allowed on each of the device's interfaces:
show management
If SSH, Telnet, HTTP, HTTPS, or SNMP is "on" for any of the interfaces other than the management interface, this is a finding.
Note: Ping may be used on inward-facing interfaces.
M
2915