GEN005570-ESXI5-000115 - The system must be configured with a default gateway for IPv6 if the system uses IPv6, unless the system is a router.

Information

If a system has no default gateway defined, the system is at increased risk of man-in-the-middle, monitoring, and Denial-of-Service attacks. NOTE that IPv6 is not enabled by default.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

The following fix text applies only if the system uses IPv6. From the vSphere Client/vCenter; click on the 'Configuration' tab; click on 'Networking'; click on 'Standard Switch/Properties'; click on 'Management NetworkProperties/Edit/IP Settings'. Select 'Use the following IP settings'; fill in the field(s) (at a minimum, the default gateway IP Address is required) per the local site requirements and click 'OK'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_ESXi5_Server_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-39286, Rule-ID|SV-250604r798811_rule, STIG-ID|GEN005570-ESXI5-000115, STIG-Legacy|SV-51102, STIG-Legacy|V-39286, Vuln-ID|V-250604

Plugin: VMware

Control ID: c5ebd034b19f9c2234a31e3d88a99b9df5a2e4fbc36c92ce2bf69361aff3edbe