Information
OL 9 SSH daemon must perform strict mode checking of home directory configuration files.
GROUP ID: V-271714
RULE ID: SV-271714r1091854
If other users have access to modify user-specific SSH configuration files, they may be able to log into the system as another user.
Solution
Configure the SSH daemon to perform strict mode checking of home directory configuration files.
Add the following line to "/etc/ssh/sshd_config" or to a file in "/etc/ssh/sshd_config.d" or uncomment the line and set the value to "yes":
StrictModes yes
The SSH service must be restarted for changes to take effect:
$ sudo systemctl restart sshd.service