UCF STIG Viewer Logo

Inetd and xinetd must be disabled or removed if no network services utilizing them are enabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-227811 GEN003700 SV-227811r603266_rule Medium
Description
Unnecessary services should be disabled to decrease the attack surface of the system.
STIG Date
Solaris 10 X86 Security Technical Implementation Guide 2020-12-04

Details

Check Text ( C-29973r489790_chk )
Determine if inetd is running,
# svcs -a | grep inetd
If inetd is not running, this check is not a finding.
# inetadm | grep -v disabled
If no enabled/online services are found, yet the inetd daemon is running, this is a finding.
Fix Text (F-29961r489791_fix)
Disable the inetd service.

Procedure:
# svcadm disable inetd