RHEL-07-020330 - The Red Hat Enterprise Linux operating system must be configured so that all files and directories have a valid group owner.

Information

Files without a valid group owner may be unintentionally inherited if a group is assigned the same Group Identifier (GID) as the GID of the files without a valid group owner.

Solution

Either remove all files and directories from the system that do not have a valid group, or assign a valid group to all files and directories on the system with the 'chgrp' command:

# chgrp <group> <file>

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_7_V3R14_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3(4), CAT|II, CCI|CCI-002165, Rule-ID|SV-204464r853898_rule, STIG-ID|RHEL-07-020330, STIG-Legacy|SV-86633, STIG-Legacy|V-72009, Vuln-ID|V-204464

Plugin: Unix

Control ID: c956f9d146f921a7ce657a65bd29081b98005df8b06117b303e0b9b786e40c53