UCF STIG Viewer Logo

All network services daemon files must have mode 0755 or less permissive.


Overview

Finding ID Version Rule ID IA Controls Severity
V-786 GEN001180 SV-38774r1_rule ECLP-1 Medium
Description
Restricting permission on daemons will protect them from unauthorized modification and possible system compromise.
STIG Date
AIX 5.3 SECURITY TECHNICAL IMPLEMENTATION GUIDE 2014-10-03

Details

Check Text ( C-36945r1_chk )
Check the mode of network services daemons.
# ls -la /usr/sbin /usr/bin
If the mode of a network services daemon is more permissive than 0755, this is a finding.
NOTE: Network daemons that may not reside in these directories (such as httpd or sshd) must also be checked for the correct permissions.
Fix Text (F-940r2_fix)
Change the mode of the network services daemon.
# chmod 0755