4.6.4.4 Ensure access to /etc/mail/sendmail.cf is configured

Information

The access controls for /etc/mail/sendmail.cf are applied.

The /etc/mail/sendmail.cf file is used by the sendmail daemon to determine its default configuration. This file must be protected from unauthorized access and modifications.

Solution

Set the recommended permissions and ownership on /etc/mail/sendmail.cf :

chmod u=rw,g=r,o= /etc/mail/sendmail.cf
chown root.system /etc/mail/sendmail.cf
trustchk -u /etc/mail/sendmail.cf mode owner group

See Also

https://workbench.cisecurity.org/benchmarks/19066

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: 1d9d4937f1b08ab93d44d012e831bfa957a65ac7d529c56e20aef5847a32cd64