GEN003820 - The rsh daemon must not be running.

Information

The rshd process provides a typically unencrypted, host-authenticated remote access service. SSH should be used in place of this service.


Satisfies: SRG-OS-000033, SRG-OS-000505, SRG-OS-000555

Solution

Disable the remote shell service and restart inetd.
Procedure:
# svcadm disable network/shell
# svcadm refresh inetd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R4_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2), CAT|I, CCI|CCI-000068, Rule-ID|SV-220039r603265_rule, STIG-ID|GEN003820, STIG-Legacy|SV-27435, STIG-Legacy|V-4687, Vuln-ID|V-220039

Plugin: Unix

Control ID: 7e7e1c51626abc45da0cc25e837155383323d8bb517371d5e6489b710eb5157d