Revision 1.16

May 11, 2022
Functional Update
  • 1.1.19 Disable Automounting
  • 2.1.1.2 Ensure ntp is configured - -u ntp:ntp
  • 2.1.10 Ensure HTTP server is not enabled
  • 2.1.10 Ensure HTTP server is not enabled - status
  • 2.1.11 Ensure IMAP and POP3 server is not enabled
  • 2.1.11 Ensure IMAP and POP3 server is not enabled - status
  • 2.1.12 Ensure Samba is not enabled
  • 2.1.12 Ensure Samba is not enabled - status
  • 2.1.13 Ensure HTTP Proxy Server is not enabled
  • 2.1.13 Ensure HTTP Proxy Server is not enabled - status
  • 2.1.14 Ensure SNMP Server is not enabled
  • 2.1.14 Ensure SNMP Server is not enabled - status
  • 2.1.15 Ensure mail transfer agent is configured for local-only mode - status
  • 2.1.16 Ensure NIS Server is not enabled
  • 2.1.16 Ensure NIS Server is not enabled - status
  • 2.1.17 Ensure rsh server is not enabled - rexec.socket status
  • 2.1.17 Ensure rsh server is not enabled - rlogin.socket status
  • 2.1.17 Ensure rsh server is not enabled - rsh.socket status
  • 2.1.18 Ensure telnet server is not enabled - status
  • 2.1.19 Ensure tftp server is not enabled - status
  • 2.1.20 Ensure rsync service is not enabled - status
  • 2.1.21 Ensure talk server is not enabled - status
  • 2.1.4 Ensure CUPS is not enabled
  • 2.1.5 Ensure DHCP Server is not enabled
  • 2.1.5 Ensure DHCP Server is not enabled - status
  • 2.1.6 Ensure LDAP server is not enabled
  • 2.1.6 Ensure LDAP server is not enabled - status
  • 2.1.7 Ensure NFS and RPC are not enabled - nfs status
  • 2.1.7 Ensure NFS and RPC are not enabled - nfs-server
  • 2.1.7 Ensure NFS and RPC are not enabled - nfs-server status
  • 2.1.7 Ensure NFS and RPC are not enabled - rpcbind status
  • 2.1.8 Ensure DNS Server is not enabled
  • 2.1.8 Ensure DNS Server is not enabled - status
  • 2.1.9 Ensure FTP Server is not enabled
  • 2.1.9 Ensure FTP Server is not enabled - status
  • 3.5.1.1 Ensure default deny firewall policy - Chain FORWARD
  • 3.5.1.1 Ensure default deny firewall policy - Chain INPUT
  • 3.5.1.1 Ensure default deny firewall policy - Chain OUTPUT
  • 3.5.2.1 Ensure IPv6 default deny firewall policy - Chain FORWARD
  • 3.5.2.1 Ensure IPv6 default deny firewall policy - Chain INPUT
  • 3.5.2.1 Ensure IPv6 default deny firewall policy - Chain OUTPUT
  • 5.4.4 Ensure default user umask is 027 or more restrictive - /etc/profile /etc/profile.d/*.sh
Informational Update
  • 2.1.1.2 Ensure ntp is configured - -u ntp:ntp