7.1 Set higher security level for sadmind service

Information

The sadmind service is the primary daemon that enables the Solaris remote administration framework for distributed system administration tasks. Since the operations allowed by this daemon are extremely powerful, it is best to use the highest security setting available for authorizing client connections. Note that given the history of significant security issues with sadmind, the items in Section 2 of this document actually disable the sadmind service, so this setting will only take effect if the service is re-enabled in inetd.conf.

See Also

https://workbench.cisecurity.org/files/633

Item Details

Audit Name: CIS Solaris 9 v1.3

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1

Plugin: Unix

Control ID: c8573cfd1935759c10382d259c537e0880210e6e24a522d8a8be99db8442d54e