2.2.13 Ensure HTTP Proxy Server is not enabled

Information

Squid is a standard proxy server used in many distributions and environments.

Rationale:

If there is no need for a proxy server, it is recommended that the squid proxy be deleted to reduce the potential attack surface.

Solution

Run the following command to disable squid:

# systemctl disable squid

See Also

https://workbench.cisecurity.org/files/3399

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: 0bb7290b365d5e8a51bc9ced4acded6ce10f35f365aaa273fce1d483057140b1