UCF STIG Viewer Logo

Inetd or xinetd logging/tracing must be enabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-1011 GEN003800 SV-35085r1_rule ECSC-1 Low
Description
Inetd or xinetd logging and tracing allows the system administrators to observe the IP addresses connecting to their machines and to observe what network services are being sought. This provides valuable information when trying to find the source of malicious users and potential malicious users.
STIG Date
HP-UX 11.31 Security Technical Implementation Guide 2018-09-14

Details

Check Text ( C-36533r1_chk )
# ps -ef | grep -v grep | egrep -i "inetd|xinetd"

If the -l logging parameter is not used, this is a finding.

If the (x)inetd process is not running, this is not a finding.
Fix Text (F-31897r1_fix)
Edit the (x)inetd startup script to include the -l parameter
for the internet daemon process.