Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-5617 | NET0728 | SV-5617r2_rule | ECSC-1 | Low |
Description |
---|
By sending a large packet to the Dynamic Host Configuration Protocol (DHCP) port it is possible to freeze the routers processing engine. |
STIG | Date |
---|---|
Perimeter Router Security Technical Implementation Guide Cisco | 2015-07-01 |
Check Text ( C-58977r2_chk ) |
---|
Review the device configuration to determine if DHCP services are running. If DHCP services are enabled, this is a finding. |
Fix Text (F-63433r1_fix) |
---|
Configure the device to disable DHCP services. |