2.1.1 Ensure chargen services are not enabled

Information

chargenis a network service that responds with 0 to 512 ASCII characters for each
connection it receives. This service is intended for debugging and testing purposes. It is
recommended that this service be disabled.

Rationale:

Disabling this service will reduce the remote attack surface of the system.

Solution

Comment out or remove any lines starting with chargen from /etc/inetd.conf and
/etc/inetd.d/* .
Set disable = yes on all chargen services in /etc/xinetd.conf and /etc/xinetd.d/* .

See Also

https://workbench.cisecurity.org/files/2420