GEN006400 - The Network Information System (NIS) protocol must not be used.

Information

Due to numerous security vulnerabilities existing within NIS, it must not be used. Possible alternative directory services are NIS+ and LDAP.

Solution

Disable the use of NIS/NIS+. Use as a replacement Kerberos or LDAP.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-17(8), 800-53|CM-7a., CAT|II, CCI|CCI-000381, CCI|CCI-001435, Rule-ID|SV-218663r603259_rule, STIG-ID|GEN006400, STIG-Legacy|SV-63803, STIG-Legacy|V-867, Vuln-ID|V-218663

Plugin: Unix

Control ID: 641de3a846c8b02a8e3360efafd191de34e420d2b6d0a68a66334e0cd5aa2f0a