Routed service active

Risk Level: Medium risk vulnerability  Medium

Check or Attack Name: routed

Platforms: Unix
Description:

The routed service was detected. This service provides an attacker your routing information. Routed accepts routing information from anyone, so it increases the possibility that an attacker can send false RIP packets, causing your data to be routed to the attacker's machine.

Remedy:

If you are using a simple gateway, use a default route. Most sites are connected through a single point of entry to the Internet with a simple infrastructure. These sites do not need to run routed.

To disable routed from running on a machine: Comment out routed from the /etc/inetd.conf file by putting a # at the beginning of the line and sending a HUP signal to the inetd (# kill -HUP <inetd.pid>).

References:

X-Force Logo
Know Your Risks