UCF STIG Viewer Logo

The system must not run Samba unless needed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-4321 GEN006060 SV-35208r1_rule DCPD-1 ECSC-1 Medium
Description
Samba is a tool used for the sharing of files and printers between Windows and UNIX operating systems. It provides access to sensitive files and, therefore, poses a security risk if compromised.
STIG Date
HP-UX 11.23 Security Technical Implementation Guide 2015-12-02

Details

Check Text ( C-36692r1_chk )
Check the system for a running Samba server.
# ps -ef |grep -v grep | grep smbd

If the Samba server is running, ask the SA if the Samba server is operationally required. If it is not, this is a finding.
Fix Text (F-32067r1_fix)
If there is no functional need for Samba and the daemon is running, disable the daemon
by killing the process ID as noted from the output of ps -ef |grep smbd. The utility should also be
removed or not installed if there is no functional requirement.