STIGQter STIGQter: STIG Summary: IBM AIX 7.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 23 Apr 2021:

There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the AIX system.

DISA Rule

SV-215432r508663_rule

Vulnerability Number

V-215432

Group Title

SRG-OS-000480-GPOS-00229

Rule Version

AIX7-00-003138

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Remove the ".rhosts", ".shosts", "hosts.equiv", and/or "shosts.equiv" files.

Check Contents

Check for the existence of the files using:
# find / -name .rhosts
# find / -name .shosts
# find / -name hosts.equiv
# find / -name shosts.equiv

If ".rhosts", ".shosts", "hosts.equiv", or "shosts.equiv" are found, this is a finding.

Vulnerability Number

V-215432

Documentable

False

Rule Version

AIX7-00-003138

Severity Override Guidance

Check for the existence of the files using:
# find / -name .rhosts
# find / -name .shosts
# find / -name hosts.equiv
# find / -name shosts.equiv

If ".rhosts", ".shosts", "hosts.equiv", or "shosts.equiv" are found, this is a finding.

Check Content Reference

M

Target Key

4012

Comments