Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22445 | GEN004950 | SV-38812r1_rule | ECLP-1 | Medium |
Description |
---|
Excessive permissions on the ftpusers file could permit unauthorized modification. Unauthorized modification could result in Denial of Service to authorized FTP users or permit unauthorized users to access the FTP service. |
STIG | Date |
---|---|
Draft AIX Security Technical Implementation Guide | 2011-08-17 |
Check Text ( C-37052r1_chk ) |
---|
Check the permissions of the /etc/ftpusers file. #aclget /etc/ftpusers Check if extended permissions are disabled. If extended permissions are not disabled, this is a finding. |
Fix Text (F-32319r1_fix) |
---|
Remove the extended ACL from the ftpusers file and disable extended permissions. #acledit /etc/ftpusers |