GEN005515-ESXI5-000100 - The SSH daemon must be configured to not allow TCP connection forwarding

Information

Note: Nessus has not performed this query, and this check is only provided for informational purposes.

Solution

Edit the SSH daemon configuration and add/modify the 'AllowTCPForwarding' configuration setting it to 'no'.
vi /etc/ssh/sshd_config

See Also

http://iase.disa.mil/stigs/os/virtualization/Pages/index.aspx

Item Details

References: CAT|III, CCI|CCI-000366, Group-ID|V-39248, Rule-ID|SV-51064r1_rule, STIG-ID|GEN005515-ESXI5-000100

Plugin: VMware

Control ID: f0008c644f87035f18bd631b234abd52694d1c2acd9e2333a673d06e38cbdea0