4.5.1.11 CDE - /etc/dt/config/*/Xresources permissions and ownership

Information

The /etc/dt/config/*/Xresources file contains appearance and behavior resources for the Dtlogin login screen.

Rationale:

The /etc/dt/config/*/Xresources file defines the customization of the Dtlogin screen. The default file, /usr/dt/config/*/Xresources, is unconditionally overwritten upon subsequent installation. It is recommended that the appropriate permissions and ownership are applied to secure the file.

Solution

Set the appropriate permissions and ownership on all Xresources files:

chown root:sys /etc/dt/config/*/Xresources
chmod u=rw,go=r /etc/dt/config/*/Xresources

Default Value:

N/A

See Also

https://workbench.cisecurity.org/benchmarks/13069

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3

Plugin: Unix

Control ID: 16b3ec5a77f806f99c3eaa74c7657779499be68879c2fb7f09567ef25bd92834