3.3.51 /etc/inetd.conf - finger

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This entry starts the fingerd daemon.

The fingerd daemon provides the server function for the finger command. This allows users to view real-time pertinent user login information on other remote systems. This service should be disabled as it may provide an attacker with a valid user list to target.

Solution

In /etc/inetd.conf, comment out the finger entry-

chsubserver -r inetd -C /etc/inetd.conf -d -v 'finger' -p 'tcp'

See Also

https://workbench.cisecurity.org/files/528