{"description": "The netfs script manages the boot-time mounting of several types\nof networked filesystems, of which NFS and Samba are the most common. If these\nfilesystem types are not in use, the script can be disabled, protecting the\nsystem somewhat against accidental or malicious changes to <tt>/etc/fstab</tt>\nand against flaws in the netfs script itself.\n\nThe <code>netfs</code> service can be disabled with the following command:\n<pre>$ sudo systemctl mask --now netfs.service</pre>", "rationale": "", "severity": "unknown", "references": {}, "control_references": {}, "components": [], "identifiers": {}, "ocil_clause": null, "ocil": null, "oval_external_content": null, "fixtext": "", "checktext": "", "vuldiscussion": "", "srg_requirement": "", "warnings": [], "conflicts": [], "requires": [], "policy_specific_content": {}, "platform": null, "platforms": [], "sce_metadata": {"check-import": "stdout", "platform": ["multi_platform_all"], "environment": "any", "filename": "service_netfs_disabled.sh", "relative_path": "ubuntu2204/checks/sce/service_netfs_disabled.sh"}, "inherited_platforms": ["system_with_kernel"], "cpe_platform_names": [], "inherited_cpe_platform_names": ["system_with_kernel"], "bash_conditional": null, "fixes": {}, "title": "Disable Network File Systems (netfs)", "definition_location": "/aptdata/openscap/scap-security-guide/linux_os/guide/services/nfs_and_rpc/disabling_nfs/disabling_netfs/service_netfs_disabled/rule.yml", "template": {"name": "service_disabled", "vars": {"servicename": "netfs"}, "backends": {}}}