<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://secscan.acron.pl/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://secscan.acron.pl/feed.php">
        <title>SecScan centos7:3:6</title>
        <description></description>
        <link>https://secscan.acron.pl/</link>
        <image rdf:resource="https://secscan.acron.pl/lib/tpl/bootstrap3/images/favicon.ico" />
       <dc:date>2026-08-31T09:45:44+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/3/6/1?rev=1493912136&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/3/6/2?rev=1493912162&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/3/6/3?rev=1493912234&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/3/6/4?rev=1493912256&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/3/6/5?rev=1493912324&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://secscan.acron.pl/lib/tpl/bootstrap3/images/favicon.ico">
        <title>SecScan</title>
        <link>https://secscan.acron.pl/</link>
        <url>https://secscan.acron.pl/lib/tpl/bootstrap3/images/favicon.ico</url>
    </image>
    <item rdf:about="https://secscan.acron.pl/centos7/3/6/1?rev=1493912136&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T17:35:36+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>3.6.1 Ensure iptables is installed (Scored)</title>
        <link>https://secscan.acron.pl/centos7/3/6/1?rev=1493912136&amp;do=diff</link>
        <description>3.6.1 Ensure iptables is installed (Scored)

Profile Applicability

Description

iptables allows configuration of the IPv4 tables in the linux kernel and the rules stored within them. Most firewall configuration utilities operate as a front end to iptables</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/3/6/2?rev=1493912162&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T17:36:02+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>3.6.2 Ensure default deny firewall policy (Scored)</title>
        <link>https://secscan.acron.pl/centos7/3/6/2?rev=1493912162&amp;do=diff</link>
        <description>3.6.2 Ensure default deny firewall policy (Scored)

Profile Applicability

Description

A default deny all policy on connections ensures that any unconfigured network usage will be rejected.

Rationale

With a default accept policy the firewall will accept any packet that is not configured to be denied. It is easier to white list acceptable usage than to black list unacceptable usage.</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/3/6/3?rev=1493912234&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T17:37:14+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>3.6.3 Ensure loopback traffic is configured (Scored)</title>
        <link>https://secscan.acron.pl/centos7/3/6/3?rev=1493912234&amp;do=diff</link>
        <description>3.6.3 Ensure loopback traffic is configured (Scored)

Profile Applicability

Description

Configure the loopback interface to accept traffic. Configure all other interfaces to deny traffic to the loopback network (127.0.0.0/8).

Rationale

Loopback traffic is generated between processes on machine and is typically critical to operation of the system. The loopback interface is the only place that loopback network (127.0.0.0/8) traffic should be seen, all other interfaces should ignore traffic on …</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/3/6/4?rev=1493912256&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T17:37:36+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>3.6.4 Ensure outbound and established connections are configured (Not Scored)</title>
        <link>https://secscan.acron.pl/centos7/3/6/4?rev=1493912256&amp;do=diff</link>
        <description>3.6.4 Ensure outbound and established connections are configured (Not Scored)

Profile Applicability

Description

Configure the firewall rules for new outbound, and established connections.

Rationale

If rules are not in place for new outbound, and established connections all packets will be dropped by the default policy preventing network usage.</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/3/6/5?rev=1493912324&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T17:38:44+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>3.6.5 Ensure firewall rules exist for all open ports (Scored)</title>
        <link>https://secscan.acron.pl/centos7/3/6/5?rev=1493912324&amp;do=diff</link>
        <description>3.6.5 Ensure firewall rules exist for all open ports (Scored)

Profile Applicability

Description

Any ports that have been opened on non-loopback addresses need firewall rules to govern traffic.

Rationale

Without a firewall rule configured for open ports default firewall policy will drop all packets to these ports.</description>
    </item>
</rdf:RDF>
