AIX must turn off X11 forwarding for the SSH daemon.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-215300SRG-OS-000480-GPOS-00227AIX7-00-002117SV-215300r991589_rule2024-08-163
Description
X11 forwarding over SSH allows for the secure remote execution of X11-based applications. This feature can increase the attack surface of an SSH connection and should not be enabled unless needed.
ℹ️ Check
If X11 forwarding has been authorized for use, this is Not Applicable. Check the SSH daemon configuration for the "X11Forwarding" directive using command: # grep -i X11Forwarding /etc/ssh/sshd_config | grep -v '^#' X11Forwarding no If the setting is not present or the setting is "yes", this is a finding.
✔️ Fix
Edit the "/etc/sshd/sshd_config" file to add the following line and save the change: X11Forwarding no Restart the SSH daemon: # stopsrc -s sshd # startsrc -s sshd