4.1.1.14 Ensure access on /var/tmp/dpid2.log is configured

Information

The /var/tmp/dpid2.log is the logfile used by dpid2 daemon, and contains SNMP information.

The /var/tmp/dpid2.log logfile is used by the dpid2 daemon and can contain sensitive SNMP information. This file must be secured from unauthorized access and modifications.

Solution

Set ownership and permissions on /var/tmp/dpid2.log :

chown root:system /var/tmp/dpid2.log
chmod o-rw /var/tmp/dpid2.log

See Also

https://workbench.cisecurity.org/benchmarks/19066

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: a822eab4e905d8e2b56a92c48c8a71b6e87ef82975725620564525fc10452fd8