AIX7-00-003132 - The AIX DHCP client must not send dynamic DNS updates.

Information

Dynamic DNS updates transmit unencrypted information about a system including its name and address and should not be used unless needed.

Solution

Configure the system's DHCP client to not send dynamic DNS updates.

Remove or comment-out 'updateDNS' lines from the '/etc/dhcpcd.ini' and '/etc/dhcpc.opt' files.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-215427r991589_rule, STIG-ID|AIX7-00-003132, STIG-Legacy|SV-101813, STIG-Legacy|V-91715, Vuln-ID|V-215427

Plugin: Unix

Control ID: ed9dd868d72e9434dad37bcd7d1191f86e3a2831b279cb27950ed3e4f2926d7b