2.1.18 Disable tcpmux-server

Information

tcpmux-server is a network service that allows a client to access other network services running on the server. It is recommended that this service be disabled.

Rationale:

tcpmux-server can be abused to circumvent the server's host based firewall. Additionally, tcpmux-server can be leveraged by an attacker to effectively port scan the server.

Solution

Disable thetcpmux-serverservice by running the following command:

# chkconfig tcpmux-server off

Default Value:

OS Default: Disabled

See Also

https://workbench.cisecurity.org/files/3096

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: c14aee84a1e2a35f219027b6bf4146b4f2b664de1c3c5b3f60f689b1084201a2