GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL

Information

SWAT is a tool used to configure Samba. As it modifies Samba configuration, which can impact system security, it must be protected from unauthorized access. SWAT authentication may involve the root password, which must be protected by encryption when traversing the network. Restricting access to the local host allows for the use of SSH TCP forwarding, if configured, or administration by a web browser on the local system.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Disable SWAT.
# chmod 0000 <path>/swat

OR

# rm -i <path>/swat

See Also

https://iasecontent.disa.mil/stigs/zip/U_HPUX_11-31_V1R19_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001436, Rule-ID|SV-35211r1_rule, STIG-ID|GEN006080, Vuln-ID|V-1026

Plugin: Unix

Control ID: ae9881787212762de15b417ae3fd2a1182dac069f4c62e60dc43e52a811db8a2