Skip to content

Deny BOOTP Queries

An XCCDF Rule

Description

Unless your network needs to support older BOOTP clients, disable support for the bootp protocol by adding or correcting the global option:

deny bootp;

Rationale

The bootp option tells dhcpd to respond to BOOTP queries. If support for this simpler protocol is not needed, it should be disabled to remove attack vectors against the DHCP server.

ID
xccdf_org.ssgproject.content_rule_dhcp_server_deny_bootp
Severity
Unknown
References
Updated