AIX7-00-002060 - AIX ftpd daemon must not be running.

Information

The ftp service is used to transfer files from or to a remote machine. The username and passwords are passed over the network in clear text and therefore insecurely. Remote file transfer, if required, should be facilitated through SSH.

Solution

Disable 'ftp' daemon entry in '/etc/inetd.conf' using command:
# chsubserver -r inetd -C /etc/inetd.conf -d -v 'ftp' -p 'tcp6'

Reload the inetd process:
# refresh -s inetd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V2R9_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(c), CAT|I, CCI|CCI-000197, Rule-ID|SV-215259r877396_rule, STIG-ID|AIX7-00-002060, STIG-Legacy|SV-101405, STIG-Legacy|V-91307, Vuln-ID|V-215259

Plugin: Unix

Control ID: ea0ad1b2c548f22abc800855a1d6be83937a0ee8e5eeb85d7567db72d4fc5d9e