The AIX DHCP client must not send dynamic DNS updates.
An XCCDF Rule
Description
Dynamic DNS updates transmit unencrypted information about a system including its name and address and should not be used unless needed.
- ID
- SV-215427r991589_rule
- Version
- AIX7-00-003132
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Configure the system's DHCP client to not send dynamic DNS updates.
Remove or comment-out "updateDNS" lines from the "/etc/dhcpcd.ini" and "/etc/dhcpc.opt" files.