GEN003815 - The portmap or rpcbind service must not be installed unless needed - 'portmap'

Information

The portmap and rpcbind services increase the attack surface of the system and should only be used when needed. The portmap or rpcbind services are used by a variety of services using Remote Procedure Calls (RPCs).

Solution

Remove the portmap package.
# rpm -e portmap
or
# yum remove portmap

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CAT|II, CCI|CCI-000305, Group-ID|V-22430, Rule-ID|SV-26666r1_rule, STIG-ID|GEN003815, Vuln-ID|V-22430

Plugin: Unix

Control ID: cde18594d7963b2452b485f61cd2a8f5183d6c6cc4b59bf8a4c192eec05ecc96