GEN004540 - The SMTP service HELP command must not be enabled. helpfile does not exist

Information

The HELP command should be disabled to mask version information. The version of the SMTP service software could be used by attackers to target vulnerabilities present in specific software versions.

Solution

To disable the SMTP HELP command, clear the Sendmail help file.
# echo -n > /etc/mail/helpfile

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-12006, Rule-ID|SV-37504r4_rule, STIG-ID|GEN004540, Vuln-ID|V-12006

Plugin: Unix

Control ID: 33c44ba885dac331b3e16718df9c378507110b10ad243986ec95d49958b78322