Deny BOOTP Queries
An XCCDF Rule
Description
Unless your network needs to support older BOOTP clients, disable support for the bootp protocol by adding or correcting the global option:
deny bootp;
Rationale
The bootp option tells dhcpd to respond to BOOTP queries. If support for this simpler protocol is not needed, it should be disabled to remove attack vectors against the DHCP server.
- ID
- xccdf_org.ssgproject.content_rule_dhcp_server_deny_bootp
- Severity
- Unknown
- References
- Updated