5.3 Enable logging of packets received on closed ports (net.inet.tcp.log_in_vain)

Information

This checks logging on closed TCP ports. It should be enabled to log failed connection attempts

See Also

https://workbench.cisecurity.org/files/632

Item Details

Audit Name: CIS FreeBSD v1.0.5

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: Unix

Control ID: 2d6f91195efe7d20104ebc4ed5d4eb293f7d448ff9df956e87af1781c9f1c5ab