AIX7-00-003063 - The ndpd-router must be disabled on AIX.

Information

This manages the Neighbor Discovery Protocol (NDP) for non-kernel activities, required in IPv6.

The ndpd-router manages NDP for non-kernel activities. Unless the server utilizes IPv6, this is not required and should be disabled to prevent attacks.

Solution

In '/etc/rc.tcpip', comment out the 'ndpd-router' entry by running command:
# chrctcp -d ndpd-router

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-215368r958478_rule, STIG-ID|AIX7-00-003063, STIG-Legacy|SV-101463, STIG-Legacy|V-91365, Vuln-ID|V-215368

Plugin: Unix

Control ID: f1ef8eac27bef3f0093a74d6be031e1de0d4f3f670cfbf55aa67d73f63a378ec