DNS: A trusted primary DNS server is configured Details It is strongly recommended to set both a primary and secondary DNS server on TiMOS/SR-OS devices. Solution Update the...
DNS: A trusted secondary DNS server is configured Details It is strongly recommended to set both a primary and secondary DNS server on TiMOS/SR-OS devices. Solution Update the...
ICMP: Do not return Proxy ARP requests Details Prevent routers from responding with unreachable notifications can be implemented at router and service interface. For interfaces such as...
ICMP: Do not return redirect messages Details Prevent routers from responding with unreachable notifications can be implemented at router and service interface. For interfaces such as...
ICMP: Do not return unreachable messages Details Prevent routers from responding with unreachable notifications can be implemented at router and service interface. For interfaces such as...
Logging: capture level is set to at least info Details Logging must be enabled to provide information for investigations of operational and security related events. This information should be...
Logging: Use an external syslog host Details Logging must be enabled to provide information for investigations of operational and security related events. This information should be...
Login: Accounts are locked after 3 failed password attempts Details When a user exceeds the maximum number of attempts allowed (the default is 3 attempts) during a certain period...
Login: Configure Pre-login Banner Details Login banners and there usage has been a topic of debate with several schools of thought. a. Don’t use...
Login: Exponential Backoff is set Details A malicious user may attempt to gain CLI access by means of a dictionary attack using a script to...