UCF STIG Viewer Logo

The sendmail package must be removed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-38671 RHEL-06-000288 SV-50472r1_rule Medium
Description
The sendmail software was not developed with security in mind and its design prevents it from being effectively contained by SELinux. Postfix should be used instead.
STIG Date
Red Hat Enterprise Linux 6 Security Technical Implementation Guide 2015-05-26

Details

Check Text ( C-46231r1_chk )
Run the following command to determine if the "sendmail" package is installed:

# rpm -q sendmail


If the package is installed, this is a finding.
Fix Text (F-43620r1_fix)
Sendmail is not the default mail transfer agent and is not installed by default. The "sendmail" package can be removed with the following command:

# yum erase sendmail