2.1.3 Ensure discard services are not enabled - discard-dgram
Information
discard is a network service that simply discards all data it receives. This service is intended for debugging and testing purposes. It is recommended that this service be disabled. Rationale: Disabling this service will reduce the remote attack surface of the system.
Solution
Run the following commands to disable discard -dgram and discard -stream: # chkconfig discard-dgram off # chkconfig discard-stream off