AIX7-00-003054 - If AIX server is not functioning as a DNS server, the named daemon must be disabled.

Information

This is the server for the DNS protocol and controls domain name resolution for its clients.

To prevent attacks this daemon should not be enabled unless there is no alternative.

Solution

In '/etc/rc.tcpip', comment out the 'named' entry by running command:
# chrctcp -d named

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-215360r958478_rule, STIG-ID|AIX7-00-003054, STIG-Legacy|SV-101445, STIG-Legacy|V-91347, Vuln-ID|V-215360

Plugin: Unix

Control ID: e58b41f40bfc58d84069bef63941ac8b885fe4ed7a1d68685da59b6e4b797765