STIGUI
V-286552CAT III — Low severitySV-286552r1274090_rule

The Aviat WTM must have Storm Control configured on all host-facing switch ports.

Rule version AWTM-L2-000005 · STIG v1 · 2026-09-15

Discussion

A traffic storm occurs when packets flood a LAN, creating excessive traffic and degrading network performance. Traffic storm control prevents network disruption by suppressing ingress traffic when the number of packets reaches configured threshold levels. Traffic storm control monitors ingress traffic levels on a port and drops traffic when the number of packets reaches the configured threshold level during any one-second interval.

Satisfies: SRG-NET-000362-L2S-000024, SRG-NET-000512-L2S-000001

Check

Verify the Aviat WTM has Storm Control configured on all host-facing switch ports with the following steps:

1. Log on to the Web UI using an admin account. 2. Using the Web UI, navigate to Switching and Routing >> Quality of Service >> Storm Control. 3. Verify that Storm Control is configured with peak-rate limits for multicast, broadcast, and unknown unicast traffic on each host-facing switch port.

If Storm Control is not configured on all host-facing switch ports, this is a finding.

Fix

Configure the Aviat WTM to enable Storm Control on all host-facing switch ports with the following steps:

1. Log on to the Web UI using an admin account. 2. Using the Web UI, navigate to Switching and Routing >> Quality of Service >> Storm Control. 3. For each host-facing switch port, configure peak-rate limits for multicast, broadcast, and unknown unicast traffic in accordance with site requirements. 4. Click "Commit".

Identifiers

Group ID
V-286552
Group title
SRG-NET-000362-L2S-000024
Rule ID
SV-286552r1274090_rule
Check ID
C-91234r1273935_chk
Fix ID
F-91139r1273936_fix