GEN003820 - The rsh daemon must not be running.

Information

The rshd process provides a typically unencrypted, host-authenticated remote access service. SSH should be used in place of this service.


Satisfies: SRG-OS-000505, SRG-OS-000555, SRG-OS-000033

Solution

Disable the remote shell service and restart inetd.
Procedure:
# svcadm disable network/shell
# svcadm refresh inetd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_x86_V2R4_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2), CAT|I, CCI|CCI-000068, Rule-ID|SV-220092r603266_rule, STIG-ID|GEN003820, STIG-Legacy|SV-27435, STIG-Legacy|V-4687, Vuln-ID|V-220092

Plugin: Unix

Control ID: 40f1ef92807868ecf47d36b921a0ff8edd63f9bfbf674402ac0f668f840bd2b7