AIX7-00-003056 - If rwhod is not required on AIX, the rwhod daemon must be disabled.

Information

This is the remote WHO service.

To prevent remote attacks this daemon should not be enabled unless there is no alternative.

Solution

In '/etc/rc.tcpip', comment out the 'rwhod' entry by running command:
# chrctcp -d rwhod

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-215362r958478_rule, STIG-ID|AIX7-00-003056, STIG-Legacy|SV-101449, STIG-Legacy|V-91351, Vuln-ID|V-215362

Plugin: Unix

Control ID: 172dd8bd7bca6b888c3b4e864315b19bc0802e94e12f676a46d53492f8174390