Information
The default configuration comes with a pre-configured policy map to ensure adequate rate limiting for most traffic types punted to the CPU.
Control plane policing can be used to increase the security of Arista switches by protecting the control plane from unnecessary or malicious traffic. It is recommended to implement control plane protection by classifying traffic types based on importance levels and configure filters to restrict and rate limit the traffic punted to the processor according to each class.
NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.
Solution
If no policy is configured, enable the default policy
system control-plane
service-policy input copp-system-policy