GEN004540 - The SMTP service HELP command must not be enabled.

Information

The HELP command should be disabled to mask version information. The version of the SMTP service software could be used by attackers to target vulnerabilities present in specific software versions.

Solution

To disable the SMTP HELP command create an empty Sendmail help file.
# > /etc/mail/help

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-38885r1_rule, STIG-ID|GEN004540, Vuln-ID|V-12006

Plugin: Unix

Control ID: dbb2e718f3d0a204c375ad0b24536b6507bc2468502643ca6ff66862677bfe5e