|Platform: macosx10.10||Date: (C)2015-06-23 (M)2017-11-21|
Drop Incoming Source-Routed Packets
A source-routed packet attempts to specify the network path the packet should take. If the system is not configured to block the incoming source-routed packets, an attacker can redirect the system's network traffic. Configuring the system to drop incoming source-routed IPv4 packets mitigates this risk.
To check if the system is configured to accept source-routed packets, run the following command:
If the value is not '0', this is a finding.
|SCAP Repo OVAL Definition||oval:org.secpod.oval:def:25095|