OL6-00-000270 - Remote file systems must be mounted with the nosuid option.

Information

NFS mounts should not present suid binaries to users. Only vendor-supplied suid executables should be installed to their default location on the local filesystem.

Solution

Add the 'nosuid' option to the fourth column of '/etc/fstab' for the line which controls mounting of any NFS mounts.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_6_V2R7_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-209009r793730_rule, STIG-ID|OL6-00-000270, STIG-Legacy|SV-65053, STIG-Legacy|V-50847, Vuln-ID|V-209009

Plugin: Unix

Control ID: 3fffbc0e4a12dd735ee0c05c7c978e0e118bd3f31fdcc363efdac1adfc003d1f