BSI-100-2: S 4.105: Initial measures after a Unix standard installation: /etc/X11/xinit/xinitrc - 'xhost +' should never be used

Information

Xauth is to preferable to xhost - 'xhost +' should never be used. (see also S 4.9 Use of the security mechanisms of X-Window)

Safeguard Catalogues: S 4: Hardware and software

S 4.105: Initial measures after a Unix standard installation

See Also

https://www.bsi.bund.de/cae/servlet/contentblob/471430/publicationFile/28223/standard_100-2_e_pdf.pdf

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Unix

Control ID: 08266427639f504a23c3563fd63d754f797b66ee0f3b253505705ebf90599187