Rule ID
SV-279601r1192483_rule
Version
V1R1
CCIs
Without identifying devices, unidentified or unknown devices may be introduced, thereby facilitating malicious activity. Peripherals include, but are not limited to, such devices as flash drives, external storage, and printers.
Verify Nutanix OS is configured to not automount devices using the following command. $ sudo systemctl status autofs If "autofs.sevice" is installed and or enabled, this is a finding.
Nutanix OS does not support the autofs.service by design. If autofs.service is enabled, some type of corruption has occurred and the OS must be rebuilt.