SOL-11.1-070170 - The system must not allow users to configure .forward files.

Information

Use of the .forward file poses a security risk in that sensitive data may be inadvertently transferred outside the organization. The .forward file also poses a secondary risk as it can be used to execute commands that may perform unintended actions.

Solution

The root role is required.

Remove any .forward files that are found.

# pfexec rm [filename]

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_x86_V3R6_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-216196r959010_rule, STIG-ID|SOL-11.1-070170, STIG-Legacy|SV-60937, STIG-Legacy|V-48065, Vuln-ID|V-216196

Plugin: Unix

Control ID: 96cbde9dc95556acbaa257a3e2ef9f799429eefd81b41eef697ad3f961d7e26c