
This patch gets the docs adjusted to work with the new RHEL 7 STIG version 1 release. The new STIG release has changed all of the numbering, but it maintains a link to (most) of the old STIG IDs in the XML. Closes-bug: 1676865 Change-Id: I65023fe63163c9804a3aec9dcdbf23c69bedb604
16 lines
389 B
ReStructuredText
16 lines
389 B
ReStructuredText
---
|
|
id: V-72287
|
|
status: implemented
|
|
tag: kernel
|
|
---
|
|
|
|
The tasks in this role set ``net.ipv4.icmp_echo_ignore_broadcasts`` to ``1``
|
|
by default. This prevents the system from responding to IPv4 ICMP echoes sent
|
|
to the broadcast address.
|
|
|
|
Deployers can opt out of this change by setting the following Ansible variable:
|
|
|
|
.. code-block:: yaml
|
|
|
|
security_disallow_echoes_broadcast_address: no
|