GEN008480 - The system must have USB Mass Storage disabled unless needed - system

Information

USB is a common computer peripheral interface. USB devices may include storage devices that could be used to install malicious software on a system or exfiltrate data.

Solution

Prevent the USB drivers from loading:
# echo 'exclude: usb_ac' >> /etc/system
# echo 'exclude: usb_as' >> /etc/system
# echo 'exclude: hid' >> /etc/system
# echo 'exclude: scsa2usb' >> /etc/system
# echo 'exclude: usbprn' >> /etc/system
# echo 'exclude: usbser_edge' >> /etc/system

The system must be restarted for these changes to take effect.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-227069r603265_rule, STIG-ID|GEN008480, STIG-Legacy|SV-26970, STIG-Legacy|V-22579, Vuln-ID|V-227069

Plugin: Unix

Control ID: 768f9d0e6286d76bd1de95b9efe17c08a945595e270b201ce5aec7ee1cbfc2a4