The imap2 service must be disabled on AIX.
An XCCDF Rule
Description
<VulnDiscussion>The imap2 service or Internet Message Access Protocol (IMAP) supports the IMAP4 remote mail access protocol. It works with sendmail and bellmail. This service should be disabled if it is not required to prevent attacks.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-215387r508663_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
In "/etc/inetd.conf", comment out the "imap2" entry by running command:
# chsubserver -r inetd -C /etc/inetd.conf -d -v 'imap2' -p 'tcp'
Restart inetd:
# refresh -s inetd