RHEL-06-000288 - The sendmail package must be removed.

Information

The sendmail software was not developed with security in mind and its design prevents it from being effectively contained by SELinux. Postfix should be used instead.

Solution

Sendmail is not the default mail transfer agent and is not installed by default. The 'sendmail' package can be removed with the following command:

# yum erase sendmail

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_6_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-218038r603264_rule, STIG-ID|RHEL-06-000288, STIG-Legacy|SV-50472, STIG-Legacy|V-38671, Vuln-ID|V-218038

Plugin: Unix

Control ID: 254fd0a40356155407dc27c265e2e7fc20d7fa42b9e595cc002494a60b6a8b90