Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • SRG-NET-000362-L2S-000027

    Group
  • The SEL-2740S must be configured with ARP flow rules that are statically created with valid IP-to-MAC address bindings.

    DAI intercepts Address Resolution Protocol (ARP) requests and verifies that each of these packets has a valid IP-to-MAC address binding before updating the local ARP cache and before forwarding the...
    Rule Medium Severity
  • SRG-NET-000343-L2S-000016

    Group
  • The SEL-2740S must authenticate all network-connected endpoint devices before establishing any connection.

    Without authenticating devices, unidentified or unknown devices may be introduced, thereby facilitating malicious activity. For distributed architectures (e.g., service-oriented architectures), th...
    Rule Medium Severity
  • SRG-NET-000148-L2S-000015

    Group
  • The SEL-2740S must uniquely identify all network-connected endpoint devices before establishing any connection.

    Controlling LAN access via identification of connecting hosts can assist in preventing a malicious user from connecting an unauthorized PC to a switch port to inject or receive data from the networ...
    Rule High Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules