4.3 Create network specific locations

Information

Network locations allow the computer to have specific configurations ready for network access when required. Locations can be used to manage which network interfaces are available for specialized network access
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Create multiple network locations as needed.
Delete the Automatic location for any device that does not use multiple network services set for DHCP or dynamic addressing. If network services like FireWire, VPN, AirPort or Ethernet are not used by a specific device class those services should be deleted:
Select Edit Locations from the Locations popup menu.
Select the Automatic location.
Click the minus button for any unneeded service.

See Also

https://workbench.cisecurity.org/files/300

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(1)

Plugin: Unix

Control ID: 66fa1786befd9ff98178c827bc61e476a117018b85d382208e9e6c18b6a13ff7