AIX must be configured with a default gateway for IPv6 if the system uses IPv6 unless the system is a router.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-215264AIX7-00-002065SV-215264r991589_ruleCCI-000366medium
Description
If a system has no default gateway defined, the system is at increased risk of man-in-the-middle, monitoring, and Denial of Service attacks.
STIGDate
IBM AIX 7.x Security Technical Implementation Guide2024-08-16

Details

Check Text (C-215264r991589_chk)

If the system is a router, this is Not Applicable. If the system does not use IPv6, this is Not Applicable. Determine if the system has a default route configured for IPv6 by running: # netstat -r | grep default default 10.11.20.1 UG 1 1823 en0 - - If a default route is not defined, this is a finding.

Fix Text (F-16460r294244_fix)

Configure an IPv6 default route on the system: # smitty route