3.5 Remove DHCP Server

Information

The Dynamic Host Configuration Protocol (DHCP) is a service that allows machines to be dynamically assigned IP addresses.

Rationale:

Unless a server is specifically set up to act as a DHCP server, it is recommended that this service be deleted to reduce the potential attack surface.

Solution

Run the following command to remove dhcp:

# yum erase dhcp

Default Value:

OS Default: Not Installed

See Also

https://workbench.cisecurity.org/files/3096

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-11, CSCv7|2.6

Plugin: Unix

Control ID: 16a2075cd69f5d2e083092a9cd5390e0f9f5d2b04d26f244a03ed42b7d820d79