BSI-100-2: S 4.105: Initial measures after a Unix standard installation: ~/.Xclients - 'xhost +' should never be used.

Information

Xauth is to preferable to xhost - 'xhost +' should never be used. (see also S 4.9 Use of the security mechanisms of X-Window)

Safeguard Catalogues: S 4: Hardware and software

S 4.105: Initial measures after a Unix standard installation

See Also

https://www.bsi.bund.de/cae/servlet/contentblob/471430/publicationFile/28223/standard_100-2_e_pdf.pdf

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CSCv6|9.1

Plugin: Unix

Control ID: 3a52c875cbaf329a12a917e292bc30c19ba1d706976cdee86c812e3c6f1180fa