GEN006060 - The system must not run Samba unless needed.

Information

Samba is a tool used for the sharing of files and printers between Windows and UNIX operating systems. It provides access to sensitive files and, therefore, poses a security risk if compromised.

Solution

If there is no functional need for Samba and the daemon is running, disable the daemon by killing the process ID as noted from the output of ps -ef |grep smbd. The samba package should also be removed or not installed if there is no functional requirement.

Procedure:
rpm -qa |grep samba

This will show whether 'samba' or 'samba3x' is installed. To remove:

rpm --erase samba
or
rpm --erase samba3x

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-17(8), 800-53|CM-7a., CAT|II, CCI|CCI-000381, CCI|CCI-001436, Rule-ID|SV-218637r603259_rule, STIG-ID|GEN006060, STIG-Legacy|SV-64125, STIG-Legacy|V-4321, Vuln-ID|V-218637

Plugin: Unix

Control ID: e35a4e72464130d18c280dfbedc5b9c68fad17570eb5759fdf22b78feffb86bd