Skip to main content
CUI

Documentation - V-206690

V-206690

Firewall Security Requirements Guide

CAT II

Title

The firewall must disable or remove unnecessary network services and functions that are not used as part of its role in the architecture.

Description

<VulnDiscussion>Network devices are capable of providing a wide variety of functions (capabilities or processes) and services. Some of these functions and services are installed and enabled by default. The organization must determine which functions and services are required to perform the content filtering and other necessary core functionality for each component of the firewall. These unnecessary capabilities or services are often overlooked and therefore may remain unsecured. They increase th...

Fix Text (Documentation Requirement)

Display and remove unnecessary licenses, services, and functions from the firewall. Examples include NTP, DNS, and DHCP. Note: Only remove unauthorized services. This control is not intended to restrict the use of network devices with multiple authorized roles.

Documentation Status

Cancel
CUI