Description
The inet-based telnet daemon should be uninstalled.
Rationale
telnet
allows clear text communications, and does not protect any
data transmission between client and server. Any confidential data can be
listened and no integrity checking is made.
- ID
xccdf_org.ssgproject.content_rule_package_inetutils-telnetd_removed
- References
CSC: Critical Security Controls
COBIT®: Control Objectives for Information and Related Technologies
ISA-62443-2-1-2009, Security for Industrial Automation and Control Systems Part 2-1: Establishing an Industrial Automation and Control Systems Security Program
ANSI/ISA-62443-3-3 (99.03.03)-2013 Security for industrial automation and control systems Part 3-3: System security requirements and security levels
NIST Special Publication 800-53 (Revision 4): Security and Privacy Controls for Federal Information Systems and Organizations
Framework for Improving Critical Infrastructure Cybersecurity