Check: GEN007840
AIX 6.1 SECURITY TECHNICAL IMPLEMENTATION GUIDE:
GEN007840
(in versions v1 r14 through v1 r10)
Title
The DHCP client must be disabled if not needed. (Cat II impact)
Discussion
DHCP allows for the unauthenticated configuration of network parameters on the system by exchanging information with a DHCP server.
Check Content
If the DHCP client is needed by the system, this is not applicable. Determine if the DHCP client is disabled. # ps -ef |grep dhcpcd If dhcpcd is running, this is a finding.
Fix Text
Disable the system's DHCP client. Edit /etc/rc.tcpip, comment out the line starting dhcpcd. Reboot the system to ensure the DHCP client has been disabled fully. Configure a static IP for the system, if network connectivity is required.
Additional Identifiers
Rule ID: SV-38931r1_rule
Vulnerability ID: V-22548
Group Title: GEN007840
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
The organization implements the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |