2.3.6 Ensure RPC is not installed

Information

Remote Procedure Call (RPC) is a method for creating low level client server applications across different system architectures. It requires an RPC compliant client listening on a network port. The supporting package is rpcbind."

If RPC is not required, it is recommended that this services be removed to reduce the remote attack surface.

Solution

Run the following command to remove rpcbind :

# apt purge rpcbind

See Also

https://workbench.cisecurity.org/benchmarks/13775

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|9.2

Plugin: Unix

Control ID: 147eb6a66bb92dfd53c5ad123e799d9ed55e978ac6c6c6efa99d0635782f4046