4.3.4.25 Ensure sprayd daemon is not in use

Information

This entry starts the sprayd daemon when required. This service is used as a tool to generate UDP packets for testing and diagnosing network problems.

The sprayd service is used as a tool to generate UDP packets for testing and diagnosing network problems.

The service must be disabled if not explicitly required for network performance testing purposes as it can be used as a (Distributed) Denial of Service ((D)DoS) attack.

Solution

In /etc/inetd.conf, comment out the sprayd entry and refresh the inetd process:

chsubserver -r inetd -C /etc/inetd.conf -d -v 'sprayd' -p udp
lssrc -s inetd && refresh -s inetd

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7

Plugin: Unix

Control ID: e7a6f967da0e64e9f759a8fdc8b4f6300191f6df341da824c3edc203abea5ea4