2.1.7 Ensure talk server is not enabled - ntalk

Information

The talk software makes it possible for users to send and receive messages across systems
through a terminal session. The talk client (allows initiate of talk sessions) is installed by
default.

Rationale:

The software presents a security risk as it uses unencrypted protocols for communication.

Solution

Comment out or remove any lines starting with talk or ntalk from /etc/inetd.conf and
/etc/inetd.d/* .
Set disable = yes on all talk services in /etc/xinetd.conf and /etc/xinetd.d/* .

See Also

https://workbench.cisecurity.org/files/2420

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: 4cf2ced620c6cef1ebd9d4e44a772f9581570ca7fad812bbd1d2ad8c4ff54b13