If DHCP server is not required on AIX, the DHCP server must be disabled.
An XCCDF Rule
Description
<VulnDiscussion>The dhcpsd daemon is the DHCP server that serves addresses and configuration information to DHCP clients in the network. To prevent remote attacks this daemon should not be enabled unless there is no alternative.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-215405r958478_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
In "/etc/rc.tcpip", comment out the "dhcpsd" entry by running command:
# chrctcp -d dhcpsd