GEN003740 - The xinetd configuration files must have mode 0640 or less permissive - '/etc/xinetd.d/*'

Information

The Internet service daemon configuration files must be protected as malicious modification could cause Denial of Service or increase the attack surface of the system.

Solution

Change the mode of the xinetd configuration files.
# chmod 0640 /etc/xinetd.conf /etc/xinetd.d/*

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-6, 800-53|CM-5(6), CAT|II, CCI|CCI-000225, CCI|CCI-001499, Rule-ID|SV-218501r603259_rule, STIG-ID|GEN003740, STIG-Legacy|SV-64239, STIG-Legacy|V-822, Vuln-ID|V-218501

Plugin: Unix

Control ID: 69bd550031eb29fa37f87085bef4d49ef7a2ee5bbcba1e1612f828c4159e5b94