RHEL-06-000007 - The system must use a separate file system for user home directories.

Information

Ensuring that '/home' is mounted on its own partition enables the setting of more restrictive mount options, and also helps ensure that users cannot trivially fill partitions used for log or audit data storage.

Solution

If user home directories will be stored locally, create a separate partition for '/home' at installation time (or migrate it later using LVM). If '/home' will be mounted from another system such as an NFS server, then creating a separate partition is not necessary at installation time, and the mountpoint can instead be configured later.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_6_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-217851r603264_rule, STIG-ID|RHEL-06-000007, STIG-Legacy|SV-50273, STIG-Legacy|V-38473, Vuln-ID|V-217851

Plugin: Unix

Control ID: 1983538704cc35a35b4d8f94cfbfe8f0c73c00de16110823de90ae1c997b9341