UCF STIG Viewer Logo

The system must have IEEE 1394 (Firewire) disabled unless needed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-22580 GEN008500 SV-37983r1_rule ECSC-1 Low
Description
Firewire is a common computer peripheral interface. Firewire devices may include storage devices with the potential to install malicious software on a system or exfiltrate data.
STIG Date
Red Hat Enterprise Linux 5 Security Technical Implementation Guide 2017-03-01

Details

Check Text ( C-37283r1_chk )
If the system needs IEEE 1394 (Firewire), this is not applicable.
Check if the firewire module is not disabled.
# grep 'install ieee1394 /bin/true' /etc/modprobe.conf /etc/modprobe.d/*
If no results are returned, this is a finding.

Fix Text (F-32520r1_fix)
Prevent the system from loading the firewire module.
# echo 'install ieee1394 /bin/true' >> /etc/modprobe.conf