UCF STIG Viewer Logo

AIX ftpd daemon must not be running.


Overview

Finding ID Version Rule ID IA Controls Severity
V-215259 AIX7-00-002060 SV-215259r508663_rule High
Description
The ftp service is used to transfer files from or to a remote machine. The username and passwords are passed over the network in clear text and therefore insecurely. Remote file transfer, if required, should be facilitated through SSH.
STIG Date
IBM AIX 7.x Security Technical Implementation Guide 2022-06-06

Details

Check Text ( C-16457r294228_chk )
Determine if the "ftp" daemon is running by running the following command:
# grep "^ftp[[:blank:]]" /etc/inetd.conf

If an entry is returned like the following line, the "ftp" daemon is running:
ftp stream tcp6 nowait root /usr/sbin/ftpd ftpd

If the above grep command returned a line that contains "ftpd", this is a finding.
Fix Text (F-16455r294229_fix)
Disable "ftp" daemon entry in "/etc/inetd.conf" using command:
# chsubserver -r inetd -C /etc/inetd.conf -d -v 'ftp' -p 'tcp6'

Reload the inetd process:
# refresh -s inetd