diff --git a/doc/source/developer-notes/V-38523.rst b/doc/source/developer-notes/V-38523.rst new file mode 100644 index 00000000..3c57bba8 --- /dev/null +++ b/doc/source/developer-notes/V-38523.rst @@ -0,0 +1,13 @@ +**Exception** + +The STIG makes several requirements for IPv4 network restrictions, but these +restrictions can impact certain network interfaces and cause service +disruptions. Some security configurations make sense for certain types of +network interfaces, like bridges, but other restrictions cause the network +interface to stop passing valid traffic between hosts, containers, or virtual +machines. + +The default network scripts and LXC userspace tools already configure various +network devices to their most secure setting. Since some hosts will act as +routers, enabling security configurations that restrict network traffic can +cause service disruptions for OpenStack environments. diff --git a/doc/source/developer-notes/V-38524.rst b/doc/source/developer-notes/V-38524.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38524.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file diff --git a/doc/source/developer-notes/V-38526.rst b/doc/source/developer-notes/V-38526.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38526.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file diff --git a/doc/source/developer-notes/V-38529.rst b/doc/source/developer-notes/V-38529.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38529.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file diff --git a/doc/source/developer-notes/V-38532.rst b/doc/source/developer-notes/V-38532.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38532.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file diff --git a/doc/source/developer-notes/V-38533.rst b/doc/source/developer-notes/V-38533.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38533.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file diff --git a/doc/source/developer-notes/V-38542.rst b/doc/source/developer-notes/V-38542.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38542.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file diff --git a/doc/source/developer-notes/V-38544.rst b/doc/source/developer-notes/V-38544.rst new file mode 120000 index 00000000..6c7ce880 --- /dev/null +++ b/doc/source/developer-notes/V-38544.rst @@ -0,0 +1 @@ +V-38523.rst \ No newline at end of file