1.172 SOL-11.1-070170

Information

The system must not allow users to configure .forward files.

GROUP ID: V-216433
RULE ID: SV-216433r959010

Use of the .forward file poses a security risk in that sensitive data may be inadvertently transferred outside the organization. The .forward file also poses a secondary risk as it can be used to execute commands that may perform unintended actions.

Solution

The root role is required.

Remove any .forward files that are found.

# pfexec rm [filename]

See Also

https://workbench.cisecurity.org/benchmarks/23765