GEN008460 - The system must have USB disabled unless needed - 'lslpp'

Information

USB is a common computer peripheral interface. USB devices may include storage devices that could be used to install malicious software on a system or exfiltrate data.

Solution

Disable USB devices on the system. Use SMIT to remove the following filesets.

devices.usbif.*

# smitty remove

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip