2.1.4 Ensure echo services are not enabled

Information

echois a network service that responds to clients with the data sent to it by the client. This
service is intended for debugging and testing purposes. It is recommended that this service
be disabled.

Rationale:

Disabling this service will reduce the remote attack surface of the system.

Solution

Comment out or remove any lines starting with echo from /etc/inetd.conf and
/etc/inetd.d/* .
Set disable = yes on all echo services in /etc/xinetd.conf and /etc/xinetd.d/* .

See Also

https://workbench.cisecurity.org/files/2420

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: 2ac5e379149a71c7fca7f7ff8e32fb49e6a3bc3a82caac15f127a1736dcc4d83