SNMP communities, users, and passphrases must be changed from the default.
An XCCDF Rule
Description
<VulnDiscussion>Whether active or not, default SNMP passwords, users, and passphrases must be changed to maintain security. If the service is running with the default authenticators, then anyone can gather data about the system and the network and use the information to potentially compromise the integrity of the system or network(s).</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-216456r793064_rule
- Severity
- High
- References
- Updated
Remediation - Manual Procedure
The root role is required.
Change the default snmpd.conf community passwords. To change them, locate the snmpd.conf file and edit it.
# pfedit [filename]