GEN003865 - Network analysis tools must not be installed - 'tshark'

Information

Network analysis tools allow for the capture of network traffic visible to the system.

Solution

Remove the network analysis tool binary from the system.
Procedure:
# rm /usr/sbin/tcpdump

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CAT|II, CCI|CCI-000305, Rule-ID|SV-38880r1_rule, STIG-ID|GEN003865, Vuln-ID|V-12049

Plugin: Unix

Control ID: c38a7c71e04f438b35b1baa29a65ef85082748a0f7734ad4bbe8db88091d4b4b