Oracle Solaris Networking (MOSC)

MOSC Banner

The "Restricted" Link Protection Setting and Clustered LDOMs

Hopefully this fits under the networking category as it deals with base networking properties, although it applies to a machine cluster setup. If it should be moved elsewhere, please feel free to do so.

We are attempting to apply setting SOL-11.1-050470 from DISA's Solaris 11 STIG. This STIG states that "The operating system must prevent internal users from sending out packets which attempt to manipulate or spoof invalid IP addresses" and requires various combinations of the four link protection properties (mac-nospoof, dhcp-nospoof, ip-nospoof, restricted) to be applied to links based on settings like whether IP forwarding is enabled or SR-IOV is in use.

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center