Rule ID
SV-239524r662023_rule
Version
V2R2
CCIs
CCI-000382
Implementing NIS or NIS+ under UDP may make SLES for vRealize more susceptible to a denial of service attack and does not provide the same quality of service as TCP.
If SLES for vRealize does not use NIS or NIS+, this is not applicable. Check if NIS or NIS+ is implemented using UDP: # rpcinfo -p | grep yp | grep udp If NIS or NIS+ is implemented using UDP, this is a finding.
Configure SLES for vRealize to not use UDP for NIS and NIS+. Consult vendor documentation for the required procedure.