2.2.6 Ensure RPC is not installed

Information

Remote Procedure Call (RPC) is a method for creating low level client server applications across different system architectures. It requires an RPC compliant client listening on a network port. The supporting package is rpcbind.'

Rationale:

If RPC is not required, it is recommended that this services be removed to reduce the remote attack surface.

Solution

Run the following command to remove rpcbind:

# apt purge rpcbind

See Also

https://workbench.cisecurity.org/files/2920

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: df75f740cb9397e4c040222c707ab5db542fefc7fc8a85f0f0a7a41bf00deecb