UCF STIG Viewer Logo

The /etc/news/infeed.conf (or equivalent) must have mode 0600 or less permissive.


Overview

Finding ID Version Rule ID IA Controls Severity
V-4274 GEN006280 SV-37712r1_rule ECLP-1 Medium
Description
Excessive permissions on the "" file may allow unauthorized modification which could lead to Denial of Service to authorized users or provide access to unauthorized users.
STIG Date
Red Hat Enterprise Linux 5 Security Technical Implementation Guide 2017-03-01

Details

Check Text ( C-36913r1_chk )
RHEL uses the InternetNewsDaemon (innd) news server. The file that corresponds to "/etc/news/hosts.nntp.nolimit" is "/etc/news/infeed.conf". Check the permissions for "/etc/news/infeed.conf".

# ls -lL /etc/news/infeed.conf

If "/etc/news/infeed.conf" has a mode more permissive than 0600, this is a finding.

Fix Text (F-32122r1_fix)
Change the mode of "/etc/news/infeed.conf" to 0600.
# chmod 0600 /etc/news/infeed.conf