2.2.11 Ensure IMAP and POP3 server is not installed

Information

exim is an open source IMAP and POP3 server for Linux based systems.

Rationale:

Unless POP3 and/or IMAP servers are to be provided by this system, it is recommended that the package be removed to reduce the potential attack surface.

Solution

Run the following commands to remove exim:

# apt-get remove exim4

# apt-get purge exim4

Additional Information:

Several IMAP/POP3 servers exist and can use other service names. dovecot and cyrus-imap are example services that provide a mail server. These and other services should also be audited.

See Also

https://workbench.cisecurity.org/files/3399

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: c1a93033c7a8c9469e353846c6687f6d90aecc39cd24604bee3de420415434c3