2.1.1 Ensure xinetd is not installed

Information

The eXtended InterNET Daemon ( xinetd ) is an open source super daemon that replaced the original inetd daemon. The xinetd daemon listens for well known services and dispatches the appropriate daemon to properly respond to service requests.

Rationale:

If there are no xinetd services required, it is recommended that the package be removed to reduce the attack surface are of the system.

Note: If an xinetd service or services are required, ensure that any xinetd service not required is stopped and disabled

Solution

Run the following command to remove xinetd:

# zypper remove xinetd

See Also

https://workbench.cisecurity.org/files/2854

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(4), CSCv7|2.6

Plugin: Unix

Control ID: 64aca23524ca525bb47524b3ea479d74cdc212554bc91735f116d13046a97975