2.2.11 Ensure IMAP and POP3 server is not enabled

Information

Unless POP3 and/or IMAP servers are to be provided by this system, it is recommended that the service be disabled to reduce the potential attack surface.

Solution

Run the following command to disable dovecot - # chkconfig dovecot offNotes-Several IMAP/POP3 servers exist and can use other service names. cyrus-imapd is an example service that provides an IMAP/POP3 server. These and other services should also be audited.

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1

Plugin: Unix

Control ID: 7525e591660ec06cd8885b30abbbffc6aa48425e7b253c33333b41914c3e9dc7