GEN005880 - The NFS server must not allow remote root access.

Information

If the NFS server allows root access to local file systems from remote hosts, this access could be used to compromise the system.

Solution

Edit the /etc/dfs/dfstab file and remove the root= option from all exports. Re-export the file systems.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-227014r603265_rule, STIG-ID|GEN005880, STIG-Legacy|SV-40307, STIG-Legacy|V-935, Vuln-ID|V-227014

Plugin: Unix

Control ID: 7d77eee10b92e25ac5a04a5232f55dbddaf924cd0397352d8f9279237721265c