1.1.9 Create Separate Partition for /home

Information

The /home directory is used to support disk storage needs of local users.

Rationale:

If the system is intended to support local users, create a separate partition for the /home directory to protect against resource exhaustion and restrict the type of files that can be stored under /home.

Solution

For new installations, check the box to 'Review and modify partitioning' and create a separate partition for /home. For systems that were previously installed, use the Logical Volume Manager (LVM) to create partitions.

See Also

https://workbench.cisecurity.org/files/3096

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CM-6, 800-53|SC-7(10), CSCv6|3.1, CSCv7|5.1, CSCv7|13

Plugin: Unix

Control ID: 61a18cb2c1e4439c8b0503321dc6b3ca205caf65f8de8e0ed48194876860c400