UCF STIG Viewer Logo

The system must not have Teredo enabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-22546 GEN007800 SV-45983r1_rule Medium
Description
Teredo is an IPv6 transition mechanism involving tunneling IPv6 packets encapsulated in IPv4 packets. Unauthorized tunneling may circumvent network security.
STIG Date
SUSE Linux Enterprise Server v11 for System z Security Technical Implementation Guide 2018-09-19

Details

Check Text ( C-43265r1_chk )
Verify the Miredo service is not running.
# ps ax | grep miredo | grep -v grep
If the miredo process is running, this is a finding.
Fix Text (F-39348r1_fix)
Edit startup scripts to prevent the service from running on startup.