4.4.2.1 Ensure iptables default deny firewall policy
Audit#
Run the following command and verify that the policy for the INPUT, OUTPUT, and FORWARD chains is DROP or REJECT:
Remediation#
Run the following commands to implement a default DROP policy:
Run the following command and verify that the policy for the INPUT, OUTPUT, and FORWARD chains is DROP or REJECT:
Run the following commands to implement a default DROP policy: