SLEM-05-232045 - SLEM 5 SSH daemon private host key files must have mode 640 or less permissive.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

If an unauthorized user obtains the private SSH host key file, the host could be impersonated.

Solution

Configure the mode of SLEM 5 SSH daemon private host key files under "/etc/ssh" to "640" with the following command:

> sudo chmod 640 /etc/ssh/ssh_host*key

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SLEM_5_V1R3_STIG.zip