4.3.4.32 Ensure xmquery daemon is not in use

Information

This entry starts the xmquery daemon when required.

This xmquery service provides near real-time network-based data monitoring and local recording from a given node.

Solution

Use chsubserver to disable this service in /etc/inetd.conf:

chsubserver -r inetd -C /etc/inetd.conf -d -v 'xmquery' -p 'udp'
refresh -s inetd

See Also

https://workbench.cisecurity.org/benchmarks/22751

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|9.2

Plugin: Unix

Control ID: ddc7bbb6b148a7e368332d22b72bdc46751c5148ff494476e1fcca3600e478d8