4.1 Enable inetd Connection Logging - Make sure that tcp_trace is set to true

Information

The inetd process starts Internet standard services and the 'tracing' feature can be used to log information about the source of any network connections seen by the daemon.

Solution

Run the following commands to enable inetd connection logging-
inetadm -M tcp_trace=true
svcadm refresh svc:/network/inetd

See Also

https://workbench.cisecurity.org/files/614

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: Unix

Control ID: 8b3cb3d4a37ec8c48b42f6b9707f3899357fa91521f07bb8125b0ddce576b8b5