UCF STIG Viewer Logo

The system must not have the dtspc service active.


Overview

Finding ID Version Rule ID IA Controls Severity
V-29506 GEN009220 SV-38710r1_rule ECSC-1 Medium
Description
This service is started automatically by the inetd daemon with root permission in response to a CDE client requesting a process to be started on the daemon’s host system. Running the dtscp service is unnecessary and it increases the attack vector of the system.
STIG Date
AIX 5.3 SECURITY TECHNICAL IMPLEMENTATION GUIDE 2014-10-03

Details

Check Text ( C-37806r1_chk )
Check the /etc/inetd.conf for the dtspc service.

#grep dtspcd /etc/inetd.conf | grep -v \#

If the dtspc service is enabled, this is a finding.
Fix Text (F-33064r1_fix)
Edit /etc/inetd.conf and comment out dtspc service line.

Restart the inetd service.
# refresh -s inetd