5.2.12 Ensure SSH X11 forwarding is disabled
Audit#
Run the following command:
# sshd -T -C user=root -C host="$(hostname)" -C addr="$(grep $(hostname) /etc/hosts | awk '{print $1}')" | grep -i x11forwarding
Verify the output matches:
Run the following command:
Nothing is returned.
Remediation#
Edit the /etc/ssh/sshd_config file to set the parameter as follows: