AZLX-23-002595 - Amazon Linux 2023 must ensure the pcscd service is active.

Information

The information system ensures that even if the information system is compromised, that compromise will not affect credentials stored on the authentication device.

The daemon program for pcsc-lite and the MuscleCard framework is pcscd. It is a resource manager that coordinates communications with smart card readers and smart cards and cryptographic tokens connected to the system.

Solution

Configure Amazon Linux 2023 so that the "pcscd" service is active with the following command:

$ sudo systemctl enable --now pcscd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Amazon_Linux_2023_V1R2_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2(6), CAT|II, CCI|CCI-004046, Rule-ID|SV-274181r1120531_rule, STIG-ID|AZLX-23-002595, Vuln-ID|V-274181

Plugin: Unix

Control ID: 5ba771f9bf5a85760a07c44127e95ebd2efd28fa3c63525a1a25b14c02c149ba