GEN008640 - The system must not use removable media as the boot loader - 'both'

Information

Malicious users with removable boot media can gain access to a system configured to use removable media as the boot loader.

Solution

Configure the system to use a bootloader installed on fixed media.
# bootlist -m normal hdisk0
# bootlist -m service hdisk0

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|I, CCI|CCI-000366, Group-ID|V-4247, Rule-ID|SV-38837r1_rule, STIG-ID|GEN008640, Vuln-ID|V-4247

Plugin: Unix

Control ID: cd4713e2a68012a17cda2af437f5fed93fdf804de54b20c5388d46a192bbee88