Skip to content

CIS Ubuntu 20.04 Level 2 Server Benchmark

Rules and Groups employed by this XCCDF Profile

  • iptables and ip6tables

    A host-based firewall called <code>netfilter</code> is included as part of the Linux kernel distributed with the system. It is activated by default...
    Group
  • Install iptables-persistent Package

    The iptables-persistent package can be installed with the following command:
    $ apt-get install iptables-persistent
    Rule Medium Severity
  • Install iptables Package

    The iptables package can be installed with the following command:
    $ apt-get install iptables
    Rule Medium Severity
  • Remove iptables-persistent Package

    The iptables-persistent package can be removed with the following command:
    $ apt-get remove iptables-persistent
    Rule Medium Severity
  • Inspect and Activate Default Rules

    View the currently-enforced <code>iptables</code> rules by running the command: <pre>$ sudo iptables -nL --line-numbers</pre> The command is analog...
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules