{"description": "The <code>iptables-services</code> package can be installed with the following command:\n<pre>\n$ apt-get install iptables-services</pre>", "rationale": "<tt>iptables-services</tt> provides the services iptables and ip6tables that have been split\nout of the base package since they are not active by default anymore.\nThese services load the iptables rules during the system startup and also allow one to reload\nthe iptables rules during runtime.", "severity": "medium", "references": {"nist": ["CM-6(a)"], "srg": ["SRG-OS-000480-GPOS-00227"]}, "control_references": {}, "components": [], "identifiers": {}, "ocil_clause": "the iptables-services package is not installed", "ocil": " Run the following command to determine if the <code>iptables-services</code> package is installed: <pre>$ dpkg -l  iptables-services</pre>", "oval_external_content": null, "fixtext": "", "checktext": "", "vuldiscussion": "", "srg_requirement": "", "warnings": [], "conflicts": [], "requires": [], "policy_specific_content": {}, "platform": "package[iptables]", "platforms": ["package[iptables]"], "sce_metadata": {}, "inherited_platforms": [], "cpe_platform_names": ["package_iptables"], "inherited_cpe_platform_names": [], "bash_conditional": null, "fixes": {}, "title": "Install iptables-services Package", "definition_location": "/aptdata/openscap/scap-security-guide/linux_os/guide/system/network/network-iptables/package_iptables-services_installed/rule.yml", "template": {"name": "package_installed", "vars": {"pkgname": "iptables-services"}, "backends": {}}}