UCF STIG Viewer Logo

The portmap or rpcbind service must not be installed unless needed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-22430 GEN003815 SV-38952r1_rule ECSC-1 Medium
Description
The portmap and rpcbind services increase the attack surface of the system and should only be used when needed. The portmap or rpcbind services are used by a variety of services using Remote Procedure Calls (RPCs).
STIG Date
AIX 6.1 Security Technical Implementation Guide 2014-09-29

Details

Check Text ( None )
None
Fix Text (F-31836r1_fix)
If the portmap or rpcbind service is part of a removable package, consult vendor documentation for the procedure to remove the package. If the service cannot be removed, prevent service activation by removing all permissions from the executable.

Procedure:
# chmod 0000 /usr/sbin/portmap