4.3.4.23 Ensure rwalld daemon is not in use

Information

This entry starts the rwalld daemon when required. This service allows remote users to broadcast system wide messages.

The rwalld service allows remote users to broadcast system wide messages. The service runs as root and should be disabled unless absolutely necessary.

Solution

Use chsubserver to disable this service in /etc/inetd.conf:

chsubserver -r inetd -C /etc/inetd.conf -d -v 'rwalld' -p 'udp'
refresh -s inetd

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|9.2

Plugin: Unix

Control ID: 0cad4aab9e445302c68d314a9d42f9125f04ee82c8285b45d0efb126d545302e