Cis Ubuntu1204 V110 7 5 3

Disable RDS

cyberstrikeus Updated

File contents

7.5.3 Disable RDS (Not Scored)

Profile Applicability

  • Level 1

Description

The Reliable Datagram Sockets (RDS) protocol is a transport layer protocol designed to provide low-latency, high-bandwidth communications between cluster nodes. It was developed by the Oracle Corporation.

Rationale

If the protocol is not being used, it is recommended that kernel module not be loaded, disabling the service to reduce the potential attack surface.

Audit Procedure

Using Command Line

Perform the following to determine if RDS is disabled.

grep "install rds /bin/true" /etc/modprobe.d/CIS.conf

Expected Result

install rds /bin/true

Remediation

Using Command Line

echo "install rds /bin/true" >> /etc/modprobe.d/CIS.conf

Default Value

RDS kernel module is available by default.

References

  • CIS Ubuntu 12.04 LTS Server Benchmark v1.1.0

Profile

Level 1 - Not Scored

cyberstrikeus/cyberstrike/tree/main/.cyberstrike/skill/CIS_benchmarks/Operating_Systems/Ubuntu/cis-ubuntu-12-04-lts-server-benchmark/cis-ubuntu1204-v110-7-5-3 commit af0634b829

Frequently asked questions

npx skillmds@latest add cyberstrikeus/cis-ubuntu1204-v110-7-5-3