UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The system must employ a local IPv6 firewall.


Overview

Finding ID Version Rule ID IA Controls Severity
V-219548 OL6-00-000103 SV-219548r603263_rule Medium
Description
The "ip6tables" service provides the system's host-based firewalling capability for IPv6 and ICMPv6.
STIG Date
Oracle Linux 6 Security Technical Implementation Guide 2021-06-14

Details

Check Text ( C-21273r358184_chk )
If the system is a cross-domain system, this is not applicable.

If IPv6 is disabled, this is not applicable.

Run the following command to determine the current status of the "ip6tables" service:

# service ip6tables status

If the service is not running, it should return the following:

ip6tables: Firewall is not running.

If the service is not running, this is a finding.
Fix Text (F-21272r358185_fix)
The "ip6tables" service can be enabled with the following commands:

# chkconfig ip6tables on
# service ip6tables start