BSI-100-2: S 4.105: Initial measures after a Unix standard installation: /usr/X11R6/lib/X11/xdm/Xsession - 'xhost +' should never be used.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Xauth is to preferable to xhost - 'xhost +' should never be used. (see also S 4.9 Use of the security mechanisms of X-Window)

Safeguard Catalogues: S 4: Hardware and software

S 4.105: Initial measures after a Unix standard installation

See Also

https://www.bsi.bund.de/cae/servlet/contentblob/471430/publicationFile/28223/standard_100-2_e_pdf.pdf

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CSCv6|9.1

Plugin: Unix

Control ID: eab6f3cbc0e8fdc28f289d6e3adc87b93813c6172e47e000b4235cb73ba88742