Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22580 | GEN008500 | SV-26972r1_rule | ECSC-1 | Low |
Description |
---|
Firewire is a common computer peripheral interface. Firewire devices may include storage devices that could be used to install malicious software on a system or exfiltrate data. |
STIG | Date |
---|---|
SOLARIS 9 SPARC SECURITY TECHNICAL IMPLEMENTATION GUIDE | 2015-10-01 |
Check Text ( C-27919r1_chk ) |
---|
If the system needs IEEE 1394 (Firewire), this is not applicable. Check if the firewire module is not disabled. # grep 'exclude: s1394' /etc/system If no results are returned, this is a finding. |
Fix Text (F-24234r2_fix) |
---|
Disable the firewire module. # echo "exclude: s1394" >> /etc/system Reboot for the changes to take effect. |