Securing RHS default OS services and configuration

Solution Verified - Updated -

Issue

After a technical risk review of Red Hat Storage, we have determined the following actions need to be taken. What are the functional and supportability implications of making these changes?

  1. disable libvirtd (listening on port 2813)
  2. disable python script (listening on port 3156)
  3. disable python script (listening on port 1877)
  4. disable vdsm-* services
  5. disable automountd service
  6. disable rhsmcertd
  7. mount /tmp and /dev/shm with nodev,nosuid,noexec
  8. disable samba (until needed)
  9. disable rhnsd service

Environment

  • Red Hat Storage Server 2.1

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In
Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.