UCF STIG Viewer Logo

The sendmail package must be removed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-209021 OL6-00-000288 SV-209021r793742_rule Medium
Description
The sendmail software was not developed with security in mind and its design prevents it from being effectively contained by SELinux. Postfix should be used instead.
STIG Date
Oracle Linux 6 Security Technical Implementation Guide 2021-12-03

Details

Check Text ( C-9274r357848_chk )
Run the following command to determine if the "sendmail" package is installed:

# rpm -q sendmail

If the package is installed, this is a finding.
Fix Text (F-9274r357849_fix)
Sendmail is not the default mail transfer agent and is not installed by default. The "sendmail" package can be removed with the following command:

# yum erase sendmail