RHEL-08-040070 - The RHEL 8 file system automounter must be disabled unless required.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Automatically mounting file systems permits easy introduction of unknown devices, thereby facilitating malicious activity.

Solution

Configure the operating system to disable the ability to automount devices.

Turn off the automount service with the following commands:

$ sudo systemctl stop autofs
$ sudo systemctl disable autofs

If 'autofs' is required for Network File System (NFS), it must be documented with the ISSO.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_8_V1R6_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000778, Rule-ID|SV-230502r627750_rule, STIG-ID|RHEL-08-040070, Vuln-ID|V-230502

Plugin: Unix

Control ID: fde8f08c1bf4b3ec9c78c05ef7d6746e8dabf7ab17a8da65889a0854bb3bf96a