2.1.11 Ensure IMAP and POP3 server is not enabled

Information

dovecot is an open source IMAP and POP3 server for Linux based systems.

Rationale:

Unless POP3 and/or IMAP servers are to be provided by this system, it is recommended that the service be disabled to reduce the potential attack surface.

Solution

Run the following command to disable dovecot :

# systemctl disable dovecot
# systemctl stop dovecot

See Also

https://workbench.cisecurity.org/files/2449

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: 66d6af8f67b7033e031774976e3ff17e9755f93af32fba9a761139052dbb4e7d