UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

All system files, programs, and directories must be owned by a system account.


Overview

Finding ID Version Rule ID IA Controls Severity
V-795 GEN001220 M6 SV-37988r1_rule ECLP-1 Medium
Description
Restricting permissions will protect the files from unauthorized modification.
STIG Date
MAC OSX 10.6 Workstation Security Technical Implementation Guide Draft 2013-01-10

Details

Check Text ( C-37573r1_chk )
Open a terminal session and enter the following command to verify the ownership of system files, programs, and directories.

Procedure:
ls -lLa/bin /usr/bin /sbin /usr/sbin

If any of the system files, programs, or directories are not owned by a system account, this is a finding.
Fix Text (F-32816r1_fix)
Open a terminal session and enter the following command to change the owner of system files, programs, and directories to a system account.

chown root