2.1.1 Ensure chargen services are not enabled - chargen-dgram

Information

chargen is a network service that responds with 0 to 512 ASCII characters for each connection it receives. This service is intended for debugging and testing purposes. It is recommended that this service be disabled.

Rationale:

Disabling this service will reduce the remote attack surface of the system.

Solution

Run the following commands to disable chargen-dgram and chargen-stream :

# chkconfig chargen-dgram off
# chkconfig chargen-stream off

See Also

https://workbench.cisecurity.org/files/3148

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: a03280fc803ac7be5eed82e24601140dff90ce580fc2513fcb750ccba6ffbf17