UCF STIG Viewer Logo

The sendmail package must be removed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-50881 OL6-00-000288 SV-65087r1_rule Medium
Description
The sendmail software was not developed with security in mind and its design prevents it from being effectively contained by SELinux. Postfix should be used instead.
STIG Date
Oracle Linux 6 Security Technical Implementation Guide 2016-06-05

Details

Check Text ( C-53353r1_chk )
Run the following command to determine if the "sendmail" package is installed:

# rpm -q sendmail

If the package is installed, this is a finding.
Fix Text (F-55675r1_fix)
Sendmail is not the default mail transfer agent and is not installed by default. The "sendmail" package can be removed with the following command:

# yum erase sendmail