OL6-00-000268 - The rdisc service must not be running - PROCESS_CHECK

Information

General-purpose systems typically have their network and routing information configured statically by a system administrator. Workstations or some special-purpose systems often use DHCP (instead of IRDP) to retrieve dynamic network configuration information.

Solution

The 'rdisc' service implements the client side of the ICMP Internet Router Discovery Protocol (IRDP), which allows discovery of routers on the local subnet. If a router is discovered then the local routing table is updated with a corresponding default route. By default this daemon is disabled. The 'rdisc' service can be disabled with the following commands:

# chkconfig rdisc off
# service rdisc stop

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_6_V2R7_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CAT|III, CCI|CCI-000382, Rule-ID|SV-208942r793728_rule, STIG-ID|OL6-00-000268, STIG-Legacy|SV-65049, STIG-Legacy|V-50843, Vuln-ID|V-208942

Plugin: Unix

Control ID: 166bc341a47163c47f6c95bb4d5b8523c2baa028e85c687eceefc0511da9d043