UCF STIG Viewer Logo

The router must enable authentication for all OSPF v3 peers.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000025-RTR-000027 SRG-NET-000025-RTR-000027 SRG-NET-000025-RTR-000027_rule Medium
Description
A rogue router could send a fictitious routing update to convince a site's perimeter router to send traffic to an incorrect or even a rogue destination. This diverted traffic could be analyzed to learn confidential information of the site's network, or merely used to disrupt the network's ability to communicate with other networks.
STIG Date
Router Security Requirements Guide 2013-07-30

Details

Check Text ( C-SRG-NET-000025-RTR-000027_chk )
Verify authentication is implemented for all OSPFv3 peers.
Fix Text (F-SRG-NET-000025-RTR-000027_fix)
Configure authentication for all OSPFv3 peers.