GEN003810 - The portmap or rpcbind service must not be running unless needed - permissions

Information

The portmap and rpcbind services increase the attack surface of the system and should only be used when needed. The portmap or rpcbind services are used by a variety of services using Remote Procedure Calls (RPCs).

Solution

Stop and disable the rpcbind service, then verify it has not been
restarted.
# kill rpcbind
# chmod 0000 /usr/sbin/rpcbind
# ps -ef | grep -v grep | grep rpcbind

See Also

https://iasecontent.disa.mil/stigs/zip/U_HPUX_11-31_V1R19_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CAT|II, CCI|CCI-001436, CSCv6|3.1, Rule-ID|SV-26665r1_rule, STIG-ID|GEN003810, Vuln-ID|V-22429

Plugin: Unix

Control ID: 9834f2448430a71a84a5587ef72e11747b1161d618e1536feddc8766c8f52375