Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-3005 | NET0190 | SV-3005r1_rule | Low |
Description |
---|
NAT works well with the implementation of RFC 1918 addressing scheme, it also has the privacy benefit of hiding real internal addresses. An attacker can learn more about a site’s private network once it has discovered the real IP addresses of the hosts within. |
STIG | Date |
---|---|
Perimeter L3 Switch Security Technical Implementation Guide - Cisco | 2016-07-07 |
Check Text ( C-3436r1_chk ) |
---|
Review the firewall or premise router configuration to determine if NAT has been implemented. |
Fix Text (F-3030r1_fix) |
---|
Implement Network Address Translation (NAT) on the firewall or premise router for NIPRNet Enclaves. |