UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The tftp-server package must not be installed unless required.


Overview

Finding ID Version Rule ID IA Controls Severity
V-38606 RHEL-06-000222 SV-50407r2_rule Medium
Description
Removing the "tftp-server" package decreases the risk of the accidental (or intentional) activation of tftp services.
STIG Date
Red Hat Enterprise Linux 6 Security Technical Implementation Guide 2016-06-05

Details

Check Text ( C-46164r1_chk )
Run the following command to determine if the "tftp-server" package is installed:

# rpm -q tftp-server


If the package is installed, this is a finding.
Fix Text (F-43554r1_fix)
The "tftp-server" package can be removed with the following command:

# yum erase tftp-server