GEN003860 - The system must not have the finger service active.

Information

The finger service provides information about the system's users to network clients. This information could expose more information for potential used in subsequent attacks.

Solution

Edit /etc/xinetd.d/finger and set 'disable=yes'

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V1R14_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CAT|III, CCI|CCI-001551, CSCv6|9.1, Rule-ID|SV-64051r1_rule, STIG-ID|GEN003860, Vuln-ID|V-4701

Plugin: Unix

Control ID: ee07f3fdcaf20c1160a5a631d0ea95dea3f0631091f34ec801e4dce6ea175952