WA00530 A22 - The process ID (PID) file must be properly secured. 'PidFile directory'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The PidFile directive sets the file path to the process ID file to which the server records the process id of the server, which is useful for sending a signal to the server process or for checking on the health of the process. If the PidFile is placed in a writable directory, other accounts could create a denial of service attack and prevent the server from starting by creating a PID file with the same name.

Solution

Modify the location, permissions, and/or ownership for the PID file folder.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Apache_2-2_UNIX_V1R10_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CAT|II, Rule-ID|SV-33222r1_rule, STIG-ID|WA00530, Vuln-ID|V-26305

Plugin: Unix

Control ID: 2abaae8ea107917ca3fb3d9170c75b4a13cea4689ea834436ec2561b8ae71da3