UCF STIG Viewer Logo

The system must not run Samba unless needed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-4321 GEN006060 SV-4321r2_rule DCPD-1 ECSC-1 Medium
Description
Samba is a tool used for the sharing of files and printers between Windows and UNIX operating systems. It provides access to sensitive files and, therefore, poses a security risk if compromised.
STIG Date
UNIX SRG 2013-03-26

Details

Check Text ( C-2132r2_chk )
Check the system for a running Samba server.

Procedure:
# ps -ef |grep smbd

If the Samba server is running, ask the SA if the Samba server is operationally required. If it is not, this is a finding.
Fix Text (F-4232r2_fix)
If there is no functional need for Samba and the daemon is running, disable the daemon by killing the process ID as noted from the output of ps -ef |grep smbd. The utility should also be removed or not installed if there is no functional requirement.