NET-IPV6-029 - The network device must block IPv6 multicast addresses used as a source address.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

IPv6 multicast addresses should never be a source address. They should only be destination addresses.

Solution

Configure the perimeter router access control lists to deny any IPv6 multicast address used as a source address.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Network_Perimeter_Router_L3_Switch_V8R32_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(11), CAT|II, Rule-ID|SV-15407r3_rule, STIG-ID|NET-IPV6-029, Vuln-ID|V-14697

Plugin: Juniper

Control ID: 9518848daaeae8643640bd5af1c3f597dc040abe413b4c144ff02aee8b1c1543