GEN003810 - The portmap or rpcbind service must not be running unless needed - 'portmap chkconfig'

Information

The portmap and rpcbind services increase the attack surface of the system and should only be used when needed. The portmap or rpcbind services are used by a variety of services using Remote Procedure Calls (RPCs).

Solution

Shutdown and disable the portmap service.
# service portmap stop; chkconfig portmap off

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(8), CAT|II, CCI|CCI-001436, Group-ID|V-22429, Rule-ID|SV-26662r1_rule, STIG-ID|GEN003810, Vuln-ID|V-22429

Plugin: Unix

Control ID: cdab0f51c9c88bd07205297b4863e70b15c9539d673f7e4d00e151a85b371525