5.1.4 Ensure talk server is not enabled - 'ntalk'

Information

The talk software makes it possible for users to send and receive messages across systems
through a terminal session. The talk client (allows initiate of talk sessions) is installed by
default.

*Rationale*

The software presents a security risk as it uses unencrypted protocols for communication.

Solution

Remove or comment out any talk or ntalk lines in /etc/inetd.conf-#talk dgram udp wait nobody.tty /usr/sbin/in.talkd in.talkd
#ntalk dgram udp wait nobody.tty /usr/sbin/in.ntalkd in.ntalkd

See Also

https://workbench.cisecurity.org/files/91

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1

Plugin: Unix

Control ID: cecce473a2dc703a260056dd3df070eae9821f0c9e933831e22a52cef6e3becd