UCF STIG Viewer Logo

The system must not run Samba unless needed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-227924 GEN006060 SV-227924r603266_rule Medium
Description
Samba is a tool used for the sharing of files and printers between Windows and UNIX operating systems. It provides access to sensitive files and, therefore, poses a security risk if compromised.
STIG Date
Solaris 10 X86 Security Technical Implementation Guide 2022-09-07

Details

Check Text ( C-30086r490189_chk )
Check the system for a running Samba server.

Procedure:
# ps -ef |grep smbd

If the Samba server is running, ask the SA if the Samba server is operationally required. If it is not, this is a finding.
Fix Text (F-30074r490190_fix)
If there is no functional need for Samba and the daemon is running, disable the daemon by killing the process ID as noted from the output of ps -ef |grep smbd. The utility should also be removed or not installed if there is no functional requirement.