GEN002020 - All .rhosts, .shosts, or host.equiv files must only contain trusted host-user pairs.

Information

If these files are not properly configured, they could allow malicious access by unknown malicious users from untrusted hosts who could compromise the system.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

If possible, remove the .rhosts, .shosts, hosts.equiv, and shosts.equiv files. If the files are required, remove any content from the files except for necessary host-user pairs.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-4427r2_rule, STIG-ID|GEN002020, Vuln-ID|V-4427

Plugin: Unix

Control ID: c659584f050230a3bc307b9318a981fe4facd2e585c2f88e9a8c0efd09944dca