AIX must be configured with a default gateway for IPv6 if the system uses IPv6 unless the system is a router.
Overview
Finding ID | Version | Rule ID | IA Controls | Severity |
V-215264 | AIX7-00-002065 | SV-215264r991589_rule | Medium |
Description |
If a system has no default gateway defined, the system is at increased risk of man-in-the-middle, monitoring, and Denial of Service attacks. |
STIG | Date |
IBM AIX 7.x Security Technical Implementation Guide | 2024-08-16 |
Details
Check Text (C-16462r294243_chk) |
If the system is a router, this is Not Applicable. If the system does not use IPv6, this is Not Applicable. Determine if the system has a default route configured for IPv6 by running: # netstat -r | grep default default 10.11.20.1 UG 1 1823 en0 - - If a default route is not defined, this is a finding. |
Fix Text (F-16460r294244_fix) |
Configure an IPv6 default route on the system: # smitty route |