GEN003840 - The rexec daemon must not be running.

Information

The rexecd process provides a typically unencrypted, host-authenticated remote access service. SSH should be used in place of this service.

Solution

Edit /etc/xinetd.d/rexec and set 'disable=yes'

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-17(8), 800-53|CM-7a., CAT|I, CCI|CCI-000381, CCI|CCI-001435, Rule-ID|SV-218516r603259_rule, STIG-ID|GEN003840, STIG-Legacy|SV-64037, STIG-Legacy|V-4688, Vuln-ID|V-218516

Plugin: Unix

Control ID: f641b64e556809fc7a50f0b2a75b93bb9f7ede1f2286337d0cf681324165de39