Xserver login managers must not be running unless needed for X11 session management.

From AIX 6.1 SECURITY TECHNICAL IMPLEMENTATION GUIDE

Part of GEN009340

Associated with IA controls: ECSC-1

Associated with: CCI-001436

SV-38722r1_rule Xserver login managers must not be running unless needed for X11 session management.

Vulnerability discussion

Running Xservers and X-login managers when not needed for X11 session management increases the attack vector of the system by running unnecessary services.

Check content

Check to see if X display login managers are running. #cat /etc/inittab | grep -e /etc/rc.dt -e xdm If any X server login managers are running, ask the SA if they are necessary for the operation of the system. If there is unnecessary X server login managers running, this is a finding.

Fix text

Comment out or remove the X login servers from the /etc/inittab file. #vi /etc/inittab Refresh the init process. # init q

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer