4.3.2.9 Ensure mrouted is not in use

Information

This entry starts the mrouted daemon on system startup. This daemon is an implementation of the multicast routing protocol.

The mrouted daemon is an implementation of the multicast routing protocol. The recommendation is to only permit this service when there is a documented need for the service.

The assumption of this recommendation is that the service is not needed - and the audit and remediation are written to disable the service (it's default setting).

Solution

In /etc/rc.tcpip comment out the mrouted entry and stop a running service:

chrctcp -d mrouted
stopsrc -s mrouted

Impact:

When this service's need is documented (include with assessment report) the audit and remediation for this service may be skipped.

The CIS controls are to disable unneeded software. When

needed

it's usage must be allowed.

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|9.2

Plugin: Unix

Control ID: d38e07ecdc4edf253cb3831dc0f6b6fb2fbdddd6b98c5f095510ffaf8512d278