UCF STIG Viewer Logo

The rexec daemon must not be running.


Overview

Finding ID Version Rule ID IA Controls Severity
V-4688 GEN003840 SV-37443r1_rule EBRP-1 ECSC-1 High
Description
The rexecd process provides a typically unencrypted, host-authenticated remote access service. SSH should be used in place of this service.
STIG Date
Red Hat Enterprise Linux 5 Security Technical Implementation Guide 2015-06-12

Details

Check Text ( C-36115r1_chk )
# grep disable /etc/xinetd.d/rexec
If the service file exists and is not disabled, this is a finding.

Fix Text (F-31361r1_fix)
Edit /etc/xinetd.d/rexec and set "disable=yes"