GEN001240 - System files, programs, and directories must be group-owned by a system group - '/sbin/*'

Information

Restricting permissions will protect the files from unauthorized modification.

Solution

Change the group-owner of system files to a system group.

Procedure:
# chgrp root /path/to/system/file

(System groups other than root may be used.)

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-5(6), CAT|II, CCI|CCI-001499, Group-ID|V-796, Rule-ID|SV-37220r1_rule, STIG-ID|GEN001240, Vuln-ID|V-796

Plugin: Unix

Control ID: 30674c6c58eb5fed630d2ccd93e13b8b0b0690dcdceae9ed6517e49abff73db4