2.1.16 Disable echo-dgram

Information

echo-dgram is a network service that responds to clients with the data sent to it by the client. This service is intended for debugging and testing purposes. It is recommended that this service be disabled.

Rationale:

Disabling this service will reduce the remote attack surface of the system.

Solution

Disable the echo-dgram service by running the following command:

# chkconfig echo-dgram off

Default Value:

OS Default: Disabled

See Also

https://workbench.cisecurity.org/files/3096

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-4, CSCv6|9.1, CSCv7|9.2

Plugin: Unix

Control ID: 9888cbbd32bfa64588455100e1866ab4b86ad483eba5486c950ffd08fafe86ab