2.2.6 Ensure RPC is not installed

Information

Remote Procedure Call (RPC) is a method for creating low level client server applications across different system architectures. It requires an RPC compliant client listening on a network port. The supporting package is rpcbind.'

Rationale:

If RPC is not required, it is recommended that this services be removed to reduce the remote attack surface.

Solution

Run the following command to remove rpcbind:

# apt purge rpcbind

See Also

https://workbench.cisecurity.org/files/3219

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-4, CSCv7|9.2

Plugin: Unix

Control ID: 4b113d724c9e9b9a1807bd9ab6490275d6690d8a9f8dc72b6348778d0cb7c489