UCF STIG Viewer Logo

The rlogind service must not be installed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-22433 GEN003835 SV-38910r1_rule DCPP-1 Medium
Description
The rlogind process provides a typically unencrypted, host-authenticated remote access service. SSH should be used in place of this service.
STIG Date
Draft AIX Security Technical Implementation Guide 2011-08-17

Details

Check Text ( C-36874r1_chk )
Determine if the rlogind service is installed. If so, this is a finding.

The rlogind is part of the bos.net.tcp.client fileset and is not removable.
Fix Text (F-31857r1_fix)
#chmod 000 /usr/bin/rlogind