GEN008520 - The system must employ a local firewall.

Information

A local firewall protects the system from exposing unnecessary or undocumented network services to the local enclave. If a system within the enclave is compromised, firewall protection on an individual system continues to protect it from attack.

Solution

Enable the system's local firewall.
# chkconfig iptables on
# service iptables start

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-17(1), 800-53|SC-7(12), CAT|II, CCI|CCI-001118, CCI|CCI-002314, Rule-ID|SV-218717r603259_rule, STIG-ID|GEN008520, STIG-Legacy|SV-63149, STIG-Legacy|V-22582, Vuln-ID|V-218717

Plugin: Unix

Control ID: 740208501b1f4f84d5574213a1d1a0eef250e7d08ad412b3422897c9f0c9168a