GEN003280 - Access to the at utility must be controlled via the at.allow and/or at.deny file(s).

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The at facility selectively allows users to execute jobs at deferred times. It is usually used for one-time jobs. The at.allow file selectively allows access to the at facility. If there is no at.allow file, there is no ready documentation of who is allowed to submit at jobs.

Solution

Create at.allow and/or at.deny files containing appropriate lists of users to be allowed or denied access to the 'at' daemon.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R2_STIG.zip

Item Details

References: CAT|II, CCI|CCI-002165, Rule-ID|SV-226860r603265_rule, STIG-ID|GEN003280, STIG-Legacy|SV-27376, STIG-Legacy|V-984, Vuln-ID|V-226860

Plugin: Unix

Control ID: 6800b1446756d71d4b64b87e6ec757d654c76f465f2d199a35d5c0a1edfc110d