GEN009310 - The system must not have the rusersd service active.

Information

The rusersd daemon gives out a list of current uses on the system. The rusersd daemon is unnecessary and it increases the attack vector of the system by providing information on the current users of the system.

Solution

Edit the /etc/inetd.conf file and comment out the rusersd service line.

Restart the inetd service.

# refresh -s inetd

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(8), CAT|II, CCI|CCI-001436, Group-ID|V-29515, Rule-ID|SV-38719r1_rule, STIG-ID|GEN009310, Vuln-ID|V-29515

Plugin: Unix

Control ID: dbaa7abcbcbf01b3179c62a494633aae134724f40b7fb24b1dcdd8c00dd47d94