UCF STIG Viewer Logo

The rsh-server package must not be installed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-239513 VROM-SL-000460 SV-239513r661990_rule Medium
Description
The "rsh-server" package provides several obsolete and insecure network services. Removing it decreases the risk of those services' accidental (or intentional) activation.
STIG Date
VMware vRealize Operations Manager 6.x SLES Security Technical Implementation Guide 2021-07-01

Details

Check Text ( C-42746r661988_chk )
Check if "rsh-server" package is installed:

# rpm -q rsh-server

If there is a "rsh-server" package listed, this is a finding.
Fix Text (F-42705r661989_fix)
To remove the "telnet-server" package use the following command:

rpm -e rsh-server