AIX7-00-003086 - The echo daemon must be disabled on AIX.

Information

The echo service can be used in Denial of Service or SMURF attacks. It can also be used by someone else to get through a firewall or start a data storm. The echo service is unnecessary and it increases the attack vector of the system.

Solution

In '/etc/inetd.conf', comment out the 'echo' entries by running commands:
# chsubserver -r inetd -C /etc/inetd.conf -d -v 'echo' -p 'tcp'
# chsubserver -r inetd -C /etc/inetd.conf -d -v 'echo' -p 'udp'

Restart inetd:
# refresh -s inetd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-215391r958478_rule, STIG-ID|AIX7-00-003086, STIG-Legacy|SV-101511, STIG-Legacy|V-91413, Vuln-ID|V-215391

Plugin: Unix

Control ID: 2c44e4a742c5ba5d468b83146ed62364dae723f8a81e247d9918493c31e9069a