Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
SRG-NET-000025-RTR-000020 | SRG-NET-000025-RTR-000020 | SRG-NET-000025-RTR-000020_rule | Medium |
Description |
---|
A rogue router could send a fictitious routing update to convince a site's perimeter router to send traffic to an incorrect or even a rogue destination. This diverted traffic could be analyzed to learn confidential information of the site's network, or merely used to disrupt the network's ability to communicate with other networks. |
STIG | Date |
---|---|
Router Security Requirements Guide | 2013-07-30 |
Check Text ( C-SRG-NET-000025-RTR-000020_chk ) |
---|
Verify authentication is implemented for IGP and EGP peers. |
Fix Text (F-SRG-NET-000025-RTR-000020_fix) |
---|
Configure authentication for all IGP and EGP peers. |