3.6 Disable Directed Broadcast Packet Forwarding

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This setting controls whether Solaris forwards broadcast packets for a specific network if it
is directly connected to the machine.

Rationale:

Keep this parameter disabled to prevent denial of service attacks.

Solution

To enforce this setting, use the command:

# ipadm set-prop -p _forward_directed_broadcasts=0 ip

See Also

https://workbench.cisecurity.org/files/2582