GEN008520 - The system must employ a local firewall.

Information

A local firewall protects the system from exposing unnecessary or undocumented network services to the local enclave. If a system within the enclave is compromised, firewall protection on an individual system continues to protect it from attack.

Solution

Enable the system's local firewall.
# chkconfig iptables on
# service iptables start

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CAT|II, CCE|CCE-4189-7, CCI|CCI-001118, Group-ID|V-22582, Rule-ID|SV-37984r1_rule, STIG-ID|GEN008520, Vuln-ID|V-22582

Plugin: Unix

Control ID: 110f0eaca1e4a82f208971fc7897896d671e7a93b493ad271ffc2e2e9e9ab800