UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The PF_LLC protocol handler must not be bound to the network stack.


Overview

Finding ID Version Rule ID IA Controls Severity
V-22535 GEN000000-LNX007580 SV-26210r1_rule ECSC-1 Medium
Description
The Packet Family - Logical Link Control (PF_LLC) protocol handler provides a sockets interface for applications to communicate over the LLC sublayer. This interface is not commonly used and may increase the attack surface of the system.
STIG Date
VMware ESX 3 Server 2016-05-13

Details

Check Text ( C-29134r1_chk )
If the system does not have a PF_LLC protocol handler, this is not applicable.

Determine if the PF_LLC protocol handler is bound to the network stack. If it is, this is a finding.
Fix Text (F-26140r1_fix)
Unbind the PF_LLC protocol handler from the network stack.