Configuring CIDR Network Addresses for the BIG-IP packet filter - Review Packet-Filter Rules

Information

You can use the BIG-IP packet filter functionality to enhance network security by enforcing an access policy on traffic ingressing or egressing a VLAN on the BIG-IP system. You must configure packet filter functionality to block CIDR network addresses from the TMOS Shell.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

1. Log in to the Configuration utility.
2. Go to Network > Packet Filters > Rules.
3. Select Packet-Filter rule to review.

See Also

https://support.f5.com/csp/article/K53108777#link_01

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-10, CAT|II, CCI|CCI-000054, Rule-ID|SV-74521r2_rule, STIG-ID|F5BI-DM-000003, Vuln-ID|V-60091

Plugin: F5

Control ID: ecc885e966cf92581beceeb610edbc177d7d51ec5457c6fda7d328d0033cc634