UCF STIG Viewer Logo

The SLES for vRealize must not have Teredo enabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-239548 VROM-SL-000645 SV-239548r662095_rule Medium
Description
Teredo is an IPv6 transition mechanism that involves tunneling IPv6 packets encapsulated in IPv4 packets. Unauthorized tunneling may circumvent network security.
STIG Date
VMware vRealize Operations Manager 6.x SLES Security Technical Implementation Guide 2021-07-01

Details

Check Text ( C-42781r662093_chk )
Verify the "Miredo" service is not running:

# ps ax | grep miredo | grep -v grep

If the Miredo process is running, this is a finding.

Note: For Appliance OS, "Miredo" is not included by default, this is not a finding.
Fix Text (F-42740r662094_fix)
Kill the "Miredo" service.

Edit startup scripts to prevent the service from running on startup.