GEN003810 - The portmap or rpcbind service must not be running unless needed - 'portmap chkconfig'

Information

The portmap and rpcbind services increase the attack surface of the system and should only be used when needed. The portmap or rpcbind services are used by a variety of services using Remote Procedure Calls (RPCs).

Solution

Shutdown and disable the portmap service.
# service portmap stop; chkconfig portmap off

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-218510r603259_rule, STIG-ID|GEN003810, STIG-Legacy|SV-63995, STIG-Legacy|V-22429, Vuln-ID|V-218510

Plugin: Unix

Control ID: cf9890bf8c16bdbb28c2acd07378a10992ca8bce6970c4afea58dfd70f160281