GEN003860 - The system must not have the finger service active.

Information

The finger service provides information about the system's users to network clients. This information could expose information that could be used in subsequent attacks.

Solution

Disable the finger service and restart inetd.
Procedure:
# svcadm disable finger
# svcadm refresh inetd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-226922r603265_rule, STIG-ID|GEN003860, STIG-Legacy|SV-27441, STIG-Legacy|V-4701, Vuln-ID|V-226922

Plugin: Unix

Control ID: e7c4ea88f256cb96aa5e81c50ad0ea1acafaab6950505680058f23378143128d