1.28 RHEL-09-213045

Information

RHEL 9 must be configured to disable the Asynchronous Transfer Mode kernel module.

GROUP ID: V-257804
RULE ID: SV-257804r1044853

Disabling Asynchronous Transfer Mode (ATM) protects the system against exploitation of any flaws in its implementation.

Solution

To configure the system to prevent the atm kernel module from being loaded, add the following line to the file /etc/modprobe.d/atm.conf (or create atm.conf if it does not exist):

install atm /bin/false
blacklist atm

See Also

https://workbench.cisecurity.org/benchmarks/22008

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-257804r1044853_rule, STIG-ID|RHEL-09-213045, Vuln-ID|V-257804

Plugin: Unix

Control ID: 71146a02f093f46b16300b902586629c5e39fbd223a41c03147c4b7986ab2f49