GEN001364 M6 - The /etc/resolv.conf file must have mode 0644 or less permissive

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The resolv.conf (or equivalent) file configures the system's DNS resolver. DNS is used to resolve host names to IP addresses. If DNS configuration is modified maliciously, host name resolution may fail or return incorrect information. DNS may be used by a variety of system security functions, such as time synchronization, centralized authentication, and remote system logging.

Solution

Open a terminal session and enter the following command to set permissions on the file.

chmod 644 /etc/resolv.conf

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx_10.6_v1r3_stig_20130426.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CAT|II, CCI|CCI-000225, CSCv6|3.1, Rule-ID|SV-38079r1_rule, STIG-ID|GEN001364-M6, Vuln-ID|V-22321

Plugin: Unix

Control ID: 676bc7ee29d0c7807ce029741dac9a921d0f83aa6462dce22196f61dbfa21635