Rule ID
SV-215430r991589_rule
Version
V3R2
CCIs
Responding to broadcast ICMP echo requests facilitates network mapping and provides a vector for amplification attacks.
From the command prompt, run the following command: # /usr/sbin/no -o bcastping bcastping = 0 If the value returned is not "0", this is a finding.
Configure the system to not respond to IPv6 multicast ICMP ECHO_REQUESTs by running: # /usr/sbin/no -p -o bcastping=0