BSI-100-2: S 4.105: Initial measures after a Unix standard installation: /usr/X11R6/bin/startx - 'xhost +' should never be used.

Information

Xauth is to preferable to xhost - 'xhost +' should never be used. (see also S 4.9 Use of the security mechanisms of X-Window)

Safeguard Catalogues: S 4: Hardware and software

S 4.105: Initial measures after a Unix standard installation

See Also

https://www.bsi.bund.de/cae/servlet/contentblob/471430/publicationFile/28223/standard_100-2_e_pdf.pdf

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Unix

Control ID: 82b8a8a6a93cf38a4bd5446f134ecac52555a723d3407ece2201a6b54e26040e