I - Mission Critical Public
Rules and Groups employed by this XCCDF Profile
-
SRG-OS-000095-GPOS-00049
Group -
The ntalk daemon must be disabled on AIX.
This service establishes a two-way communication link between two users, either locally or remotely. Unless required the ntalk service will be disabled to prevent attacks.Rule High Severity -
SRG-OS-000095-GPOS-00049
Group -
The chargen daemon must be disabled on AIX.
This service is used to test the integrity of TCP/IP packets arriving at the destination. This chargen service is a character generator service and is used for testing the integrity of TCP/IP pack...Rule Medium Severity -
SRG-OS-000095-GPOS-00049
Group -
The discard daemon must be disabled on AIX.
The discard service is used as a debugging and measurement tool. It sets up a listening socket and ignores data that it receives. This is a /dev/null service and is obsolete. This can be used in Do...Rule Medium Severity -
SRG-OS-000095-GPOS-00049
Group -
The dtspc daemon must be disabled on AIX.
The dtspc service deals with the CDE interface of the X11 daemon. It is started automatically by the inetd daemon in response to a CDE client requesting a process to be started on the daemon's host...Rule Medium Severity -
SRG-OS-000095-GPOS-00049
Group -
The pcnfsd daemon must be disabled on AIX.
The pcnfsd service is an authentication and printing program, which uses NFS to provide file transfer services. This service is vulnerable and exploitable and permits the machine to be compromised ...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules