ALMA-09-013330 - The /boot/grub2/grub.cfg file must be group-owned by root.

Information

The "root" group is a highly privileged group. Furthermore, the group-owner of this file should not have any access privileges anyway.

Solution

Change the group of the file /boot/grub2/grub.cfg to root by running the following command:

$ chgrp root /boot/grub2/grub.cfg

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_CL_AlmaLinux_OS_9_V1R5_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-269197r1050079_rule, STIG-ID|ALMA-09-013330, Vuln-ID|V-269197

Plugin: Unix

Control ID: 5a321d2db118040aba80ff6721c7e29d2eb489ce7d925110b65cbe1f97bd864c