UCF STIG Viewer Logo

The /etc/securetty file must be owned by root.


Overview

Finding ID Version Rule ID IA Controls Severity
V-966 GEN000000-HPUX0060 SV-38682r1_rule ECLP-1 Medium
Description
Failure to make root the owner of sensitive files and utilities may provide unauthorized owners the potential to access and/or change sensitive information or system configurations, thus weakening the overall security posture of a site.
STIG Date
HP-UX 11.23 Security Technical Implementation Guide 2015-12-02

Details

Check Text ( C-37789r1_chk )
Check the ownership of the /etc/securetty file.
ls -lL /etc/securetty

If /etc/securetty is not owned by root, sys, or bin, this is a finding.
Fix Text (F-1120r2_fix)
Change the owner of the /etc/securetty file to root.
# chown root /etc/securetty