UCF STIG Viewer Logo

The system must employ a local IPv6 firewall.


Overview

Finding ID Version Rule ID IA Controls Severity
V-38549 RHEL-06-000103 SV-50350r1_rule Medium
Description
The "ip6tables" service provides the system's host-based firewalling capability for IPv6 and ICMPv6.
STIG Date
Red Hat Enterprise Linux 6 Security Technical Implementation Guide 2013-06-03

Details

Check Text ( C-46107r1_chk )
If IPv6 is disabled, this is not applicable.

Run the following command to determine the current status of the "ip6tables" service:

# service ip6tables status

If the service is enabled, it should return the following:

ip6tables is running...


If the service is not running, this is a finding.
Fix Text (F-43497r1_fix)
The "ip6tables" service can be enabled with the following command:

# chkconfig ip6tables on