SV-220051r603265_rule
V-220051
SRG-OS-000095
GEN004640
CAT I
10
Comment out active decode and uudecode aliases in the aliases file.
# vi /usr/mail/aliases
Activate updated aliases file.
# newaliases
Check the SMTP service for an active decode command.
Procedure:
# telnet localhost 25
decode
If the command does not return a 500 error code of command unrecognized, this is a finding.
If telnet is unavailable for testing, check for the existence of the decode and uudecode aliases in the sendmail aliases file.
Find the active sendmail aliases file.
# grep AliasFile /etc/mail/sendmail.cf
(The aliases file is usually at /etc/mail/aliases)
Look for decode aliases in the aliases file.
# grep decode /etc/mail/aliases
If there is an uncommented decode or uudecode alias in the aliases file, this is a finding.
V-220051
False
GEN004640
Check the SMTP service for an active decode command.
Procedure:
# telnet localhost 25
decode
If the command does not return a 500 error code of command unrecognized, this is a finding.
If telnet is unavailable for testing, check for the existence of the decode and uudecode aliases in the sendmail aliases file.
Find the active sendmail aliases file.
# grep AliasFile /etc/mail/sendmail.cf
(The aliases file is usually at /etc/mail/aliases)
Look for decode aliases in the aliases file.
# grep decode /etc/mail/aliases
If there is an uncommented decode or uudecode alias in the aliases file, this is a finding.
M
4060