STIGQter STIGQter: STIG Summary: IBM AIX 7.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 23 Apr 2021:

The Reliable Datagram Sockets (RDS) protocol must be disabled on AIX.

DISA Rule

SV-215394r508663_rule

Vulnerability Number

V-215394

Group Title

SRG-OS-000096-GPOS-00050

Rule Version

AIX7-00-003089

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the system to not automatically load the RDS protocol handler.

Check startup scripts for "bypasscrtl load rds" and comment out the "bypassctrl" commands.

Unload the driver from the kernel:
# bypassctrl unload rds

Check Contents

Determine if RDS is currently loaded:
# genkex | grep rds

If there is any output from the command, this is a finding.

Vulnerability Number

V-215394

Documentable

False

Rule Version

AIX7-00-003089

Severity Override Guidance

Determine if RDS is currently loaded:
# genkex | grep rds

If there is any output from the command, this is a finding.

Check Content Reference

M

Target Key

4012

Comments