SV-215298r508663_rule
V-215298
SRG-OS-000480-GPOS-00227
AIX7-00-002115
CAT II
10
Edit the "/etc/sshd/sshd_config" file and add the following line:
VerifyReverseMapping yes
Restart the SSH daemon:
# stopsrc -s sshd
# startsrc -s sshd
Check the SSH daemon configuration for the "VerifyReverseMapping" setting using command:
# grep -i VerifyReverseMapping /etc/ssh/sshd_config | grep -v '^#'
VerifyReverseMapping yes
If the setting is not present or the setting is "no", this is a finding.
V-215298
False
AIX7-00-002115
Check the SSH daemon configuration for the "VerifyReverseMapping" setting using command:
# grep -i VerifyReverseMapping /etc/ssh/sshd_config | grep -v '^#'
VerifyReverseMapping yes
If the setting is not present or the setting is "no", this is a finding.
M
4012