3.3.44 /etc/inetd.conf - sprayd

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This entry starts the sprayd daemon when required. This service is used as a tool to generate UDP packets for testing and diagnosing network problems.

The sprayd service is used as a tool to generate UDP packets for testing and diagnosing network problems. The service must be disabled if you are not running NFS, as it can be used by attackers in a Distributed Denial of Service (DDoS) attack.

Solution

In /etc/inetd.conf, comment out the sprayd entry-

chsubserver -r inetd -C /etc/inetd.conf -d -v 'sprayd' -p 'udp'

See Also

https://workbench.cisecurity.org/files/528