CCI|CCI-001097

Title

The information system monitors and controls communications at the external boundary of the information system and at key internal boundaries within the system.

Reference Item Details

Category: 2009

Audit Items

View all Reference Audit Items

NamePluginAudit Name
AMLS-L3-000290 - The Arista Multilayer Switch must configure the maximum hop limit value to at least 32.AristaDISA STIG Arista MLS DCS-7000 Series RTR v1r3
CISC-RT-000130 - The Cisco router must be configured to restrict traffic destined to itself.CiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000130 - The Cisco router must be configured to restrict traffic destined to itself.CiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000130 - The Cisco router must be configured to restrict traffic destined to itself.CiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000130 - The Cisco switch must be configured to restrict traffic destined to itself.CiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000130 - The Cisco switch must be configured to restrict traffic destined to itself.CiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000130 - The Cisco switch must be configured to restrict traffic destined to itself.CiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000140 - The Cisco router must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - externalCiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000140 - The Cisco router must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - externalCiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000140 - The Cisco router must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - externalCiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000140 - The Cisco router must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - internalCiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000140 - The Cisco router must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - internalCiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000140 - The Cisco router must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - internalCiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000140 - The Cisco switch must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - externalCiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000140 - The Cisco switch must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself - internalCiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000140 - The Cisco switch must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself.CiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000140 - The Cisco switch must be configured to drop all fragmented Internet Control Message Protocol (ICMP) packets destined to itself.CiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000320 - The Cisco perimeter router must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1.CiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000320 - The Cisco perimeter router must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1.CiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000320 - The Cisco perimeter router must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1.CiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000320 - The Cisco perimeter switch must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1.CiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000320 - The Cisco perimeter switch must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1.CiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000320 - The Cisco perimeter switch must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1.CiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000330 - The Cisco perimeter router must be configured to filter ingress traffic at the external interface on an inbound direction.CiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000330 - The Cisco perimeter router must be configured to filter ingress traffic at the external interface on an inbound direction.CiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000330 - The Cisco perimeter router must be configured to filter ingress traffic at the external interface on an inbound direction.CiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000330 - The Cisco perimeter switch must be configured to filter ingress traffic at the external interface on an inbound direction.CiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000330 - The Cisco perimeter switch must be configured to filter ingress traffic at the external interface on an inbound direction.CiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000330 - The Cisco perimeter switch must be configured to filter ingress traffic at the external interface on an inbound direction.CiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000340 - The Cisco perimeter router must be configured to filter egress traffic at the internal interface on an inbound direction.CiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000340 - The Cisco perimeter router must be configured to filter egress traffic at the internal interface on an inbound direction.CiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000340 - The Cisco perimeter router must be configured to filter egress traffic at the internal interface on an inbound direction.CiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000340 - The Cisco perimeter switch must be configured to filter egress traffic at the internal interface on an inbound direction.CiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000340 - The Cisco perimeter switch must be configured to filter egress traffic at the internal interface on an inbound direction.CiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000340 - The Cisco perimeter switch must be configured to filter egress traffic at the internal interface on an inbound direction.CiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000390 - The Cisco perimeter router must be configured to block all outbound management traffic - ip access-group EXTERNAL_ACL_OUTBOUND outCiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000390 - The Cisco perimeter router must be configured to block all outbound management traffic - ip access-group EXTERNAL_ACL_OUTBOUND outCiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000390 - The Cisco perimeter router must be configured to block all outbound management traffic - ip access-group EXTERNAL_ACL_OUTBOUND outCiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000390 - The Cisco perimeter router must be configured to block all outbound management traffic - ip access-list extended EXTERNAL_ACL_OUTBOUNDCiscoDISA STIG Cisco IOS Router RTR v2r1
CISC-RT-000390 - The Cisco perimeter router must be configured to block all outbound management traffic - ip access-list extended EXTERNAL_ACL_OUTBOUNDCiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000390 - The Cisco perimeter router must be configured to block all outbound management traffic - ip access-list extended EXTERNAL_ACL_OUTBOUNDCiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000390 - The Cisco perimeter switch must be configured to block all outbound management traffic - ip access-group EXTERNAL_ACL_OUTBOUND outCiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000390 - The Cisco perimeter switch must be configured to block all outbound management traffic - ip access-group EXTERNAL_ACL_OUTBOUND outCiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000390 - The Cisco perimeter switch must be configured to block all outbound management traffic - ip access-group EXTERNAL_ACL_OUTBOUND outCiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000390 - The Cisco perimeter switch must be configured to block all outbound management traffic - ip access-list extended EXTERNAL_ACL_OUTBOUNDCiscoDISA STIG Cisco IOS XE Switch RTR v2r1
CISC-RT-000390 - The Cisco perimeter switch must be configured to block all outbound management traffic - ip access-list extended EXTERNAL_ACL_OUTBOUNDCiscoDISA STIG Cisco NX-OS Switch RTR v2r1
CISC-RT-000390 - The Cisco perimeter switch must be configured to block all outbound management traffic - ip access-list extended EXTERNAL_ACL_OUTBOUNDCiscoDISA STIG Cisco IOS Switch RTR v2r1
CISC-RT-000400 - The Cisco out-of-band management (OOBM) gateway router must be configured to transport management traffic to the Network Operations Center (NOC) via dedicated circuit, MPLS/VPN service, or IPsec tunnel.CiscoDISA STIG Cisco IOS XE Router RTR v2r4
CISC-RT-000400 - The Cisco out-of-band management (OOBM) gateway router must be configured to transport management traffic to the Network Operations Center (NOC) via dedicated circuit, MPLS/VPN service, or IPsec tunnel.CiscoDISA STIG Cisco IOS-XR Router RTR v2r1
CISC-RT-000400 - The Cisco out-of-band management (OOBM) gateway router must be configured to transport management traffic to the Network Operations Center (NOC) via dedicated circuit, MPLS/VPN service, or IPsec tunnel.CiscoDISA STIG Cisco IOS Router RTR v2r1