6.11 Ensure IMAP and POP server is not enabled

Information

Dovecot is an open source IMAP and POP3 server for Linux based systems. Unless POP3 and/or IMAP servers are to be provided to this server, it is recommended that the service be deleted to reduce the potential attack surface.

Solution

Disable dovecot- # update-rc.d dovecot disable

See Also

https://workbench.cisecurity.org/files/85

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Unix

Control ID: 0fdc95c3de093d363d629a58e9746d06705460f5f28b64f67da277f5365c9d7c