Rule version AWTM-L2-000005 · STIG v1 · 2026-09-15
A traffic storm occurs when packets flood a LAN, creating excessive traffic and degrading network performance. Traffic storm control prevents network disruption by suppressing ingress traffic when the number of packets reaches configured threshold levels. Traffic storm control monitors ingress traffic levels on a port and drops traffic when the number of packets reaches the configured threshold level during any one-second interval.
Satisfies: SRG-NET-000362-L2S-000024, SRG-NET-000512-L2S-000001
Verify the Aviat WTM has Storm Control configured on all host-facing switch ports with the following steps:
1. Log on to the Web UI using an admin account. 2. Using the Web UI, navigate to Switching and Routing >> Quality of Service >> Storm Control. 3. Verify that Storm Control is configured with peak-rate limits for multicast, broadcast, and unknown unicast traffic on each host-facing switch port.
If Storm Control is not configured on all host-facing switch ports, this is a finding.
Configure the Aviat WTM to enable Storm Control on all host-facing switch ports with the following steps:
1. Log on to the Web UI using an admin account. 2. Using the Web UI, navigate to Switching and Routing >> Quality of Service >> Storm Control. 3. For each host-facing switch port, configure peak-rate limits for multicast, broadcast, and unknown unicast traffic in accordance with site requirements. 4. Click "Commit".