STIGQter STIGQter: STIG Summary: VMware vRealize Operations Manager 6.x SLES Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Sep 2018:

Proxy Neighbor Discovery Protocol (NDP) must not be enabled on SLES for vRealize.

DISA Rule

SV-99213r1_rule

Vulnerability Number

V-88563

Group Title

SRG-OS-000096-GPOS-00050

Rule Version

VROM-SL-000635

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Disable proxy "NDP" on the system.

For Appliance OS, "proxy_ndp" is disabled by default.

Check Contents

Determine if SLES for vRealize has proxy "NDP", and if it is enabled:

# more /proc/sys/net/ipv6/conf/*/proxy_ndp

If the file is not found, the kernel does not have proxy "NDP", this is not a finding.

If the file has a value of "0", proxy "NDP" is not enabled, this is not a finding.

If the file has a value of "1", proxy NDP is enabled, this is a finding.

Vulnerability Number

V-88563

Documentable

False

Rule Version

VROM-SL-000635

Severity Override Guidance

Determine if SLES for vRealize has proxy "NDP", and if it is enabled:

# more /proc/sys/net/ipv6/conf/*/proxy_ndp

If the file is not found, the kernel does not have proxy "NDP", this is not a finding.

If the file has a value of "0", proxy "NDP" is not enabled, this is not a finding.

If the file has a value of "1", proxy NDP is enabled, this is a finding.

Check Content Reference

M

Target Key

3461

Comments