STIGQter STIGQter: STIG Summary: IBM AIX 7.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 23 Apr 2021:

The AIX rlogind service must be disabled.

DISA Rule

SV-215347r508663_rule

Vulnerability Number

V-215347

Group Title

SRG-OS-000074-GPOS-00042

Rule Version

AIX7-00-003041

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Disable the rlogind service by editing the "'etc/inetd.conf" file.

# vi /etc/inetd.conf

Comment out the "rlogind" service.

Restart the inetd service:
# refresh -s inetd

Check Contents

Determine if the "rlogind" service is running by running the following command:
# grep -v "^#" /etc/inetd.conf |grep rlogin

If the above grep command returned a line that contains "rlogin", this is a finding.

Vulnerability Number

V-215347

Documentable

False

Rule Version

AIX7-00-003041

Severity Override Guidance

Determine if the "rlogind" service is running by running the following command:
# grep -v "^#" /etc/inetd.conf |grep rlogin

If the above grep command returned a line that contains "rlogin", this is a finding.

Check Content Reference

M

Target Key

4012

Comments