GEN003820 - The rsh daemon must not be running.

Information

The rshd process provides a typically unencrypted, host-authenticated remote access service. SSH should be used in place of this service.

Solution

Edit /etc/inetd.conf and comment out the rshd service. Restart the inetd service.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2), CAT|I, CCI|CCI-000068, Rule-ID|SV-27434r1_rule, STIG-ID|GEN003820, Vuln-ID|V-4687

Plugin: Unix

Control ID: f3b07bb8dee2b98fc7adab9be8aee0e39cdf1ea97c9085e452f0bfd245e9da6f