2.2.6 Ensure RPC is not installed

Information

Remote Procedure Call (RPC) is a method for creating low level client server applications across different system architectures. It requires an RPC compliant client listening on a network port. The supporting package is rpcbind.'

Rationale:

If RPC is not required, it is recommended that this services be removed to reduce the remote attack surface.

Solution

Run the following command to remove rpcbind:

# apt purge rpcbind

See Also

https://workbench.cisecurity.org/files/3219

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv7|9.2

Plugin: Unix

Control ID: 85fd70d6bbd289d92228f84b55552bd6fd15852c365d6e6a5e6854b70d7b52b3