RHEL-09-215020 - RHEL 9 must not have the sendmail package installed.

Information

The sendmail software was not developed with security in mind, and its design prevents it from being effectively contained by SELinux. Postfix must be used instead.

Satisfies: SRG-OS-000480-GPOS-00227, SRG-OS-000095-GPOS-00049

Solution

Remove the sendmail package with the following command:

$ sudo dnf remove sendmail

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_9_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., 800-53|CM-7a., CAT|II, CCI|CCI-000366, CCI|CCI-000381, Rule-ID|SV-257827r991589_rule, STIG-ID|RHEL-09-215020, Vuln-ID|V-257827

Plugin: Unix

Control ID: f4c19e68d1e981f6d21cb5a69a9c86f38eb467879610cc267f1ccddc53b87e12