Check: GEN003810
Solaris 9 X86 STIG:
GEN003810
(in version v1 r9)
Title
The portmap or rpcbind service must not be running unless needed. (Cat II impact)
Discussion
The portmap and rpcbind services increase the attack surface of the system and should only be used when needed. The portmap or rpcbind services are used by a variety of services using Remote Procedure Calls (RPCs).
Check Content
Check if the rpcbind process is running. # ps -ef | grep rpcbind | grep -v grep If a process is listed and is not documented as required, this is a finding.
Fix Text
Shutdown and disable the RPC service. # /etc/rc2.d/S*rpc stop # mv /etc/rc2.d/S*rpc /etc/rc2.d/DISABLED.rpc
Additional Identifiers
Rule ID: SV-26663r1_rule
Vulnerability ID: V-22429
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001436 |
The organization disables organization-defined networking protocols within the information system deemed to be nonsecure except for explicitly identified components in support of specific operational requirements. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |