SLEM-05-231050 - SLEM 5 must disable the file system automounter.

Information

Automatically mounting file systems permits easy introduction of unknown devices, thereby facilitating malicious activity.

Solution

Configure SLEM 5 to disable the ability to automount devices.

Turn off the automount service with the following command:

> sudo systemctl stop autofs

> sudo systemctl disable autofs

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SLEM_5_V1R3_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-3, CAT|II, CCI|CCI-000778, Rule-ID|SV-261286r1155779_rule, STIG-ID|SLEM-05-231050, Vuln-ID|V-261286

Plugin: Unix

Control ID: 050b22dae3447b507bcc9f6bc0a783f9867ae45534e461b550b15d4a33a37999