2.2.8 Disable Volume Manager - Make sure that system/filesystem/volfs is disabled

Information

The volume manager automatically mounts external devices for users whenever the device is attached to the system. These devices include CD-R, CD-RW, floppies, DVD, USB and 1394 mass storage devices. See the vold (1M) manual page for more details.

Note - Since this service uses Oracle's standard RPC mechanism, it is important that the system's RPC portmapper (rpcbind) also be enabled when this service is turned on. For more information see Item 2.3.14 Disable Local RPC Port Mapping Service

Solution

To disable vold, run the following command-
svcadm disable svc:/system/filesystem/volfs
svcadm disable svc:/network/rpc/smserver

See Also

https://workbench.cisecurity.org/files/614