GEN006220 - The smb.conf file must use the hosts option to restrict access to Samba.

Information

Samba increases the attack surface of the system and must be restricted to communicate only with systems requiring access.

Solution

Edit the smb.conf file and set the hosts option to permit only authorized hosts to access Samba.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Rule-ID|SV-39237r1_rule, STIG-ID|GEN006220, Vuln-ID|V-1030

Plugin: Unix

Control ID: 1f40f0e31121cfa1712a8d2e67bcd7d0aefca5c1f1d27323ba4c569eeb9ca8f2