Ensure DHCP is disabled

Details

Disable the Dynamic Host Configuration Protocol (DHCP) server on your device.

Rationale:

The DHCP server supplies automatic configuration parameters, such as dynamic IP address, to requesting systems. A dedicated server located in a secured management zone should be used to provide DHCP services instead. Attackers can potentially be used for denial-of-service (DoS) attacks.

Solution

Run the following command to disable the DHCP.
CLI:

Hostname> set dhcp server disable

GUI:

Navigate to Network Management > DHCP Server > DHCP Server Configuration > veriify Enable DHCP Server is unchecked

Default Value:

DHCP Server Disabled

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system CheckPoint.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles