GEN005420 - The /etc/syslog.conf file must be group-owned by root, bin, or sys.

Information

If the group owner of /etc/syslog.conf is not root, bin, or sys, unauthorized users could be permitted to view, edit, or delete important system messages handled by the syslog facility.

Solution

Change the group owner of the /etc/syslog.conf file to root, bin, or sys.

Procedure:
# chgrp root /etc/syslog.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-226981r603265_rule, STIG-ID|GEN005420, STIG-Legacy|SV-39892, STIG-Legacy|V-4394, Vuln-ID|V-226981

Plugin: Unix

Control ID: 597606c70fbe4dff319a20405715362144203c055be4bfa3cd1b3ae1eee051df