Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22436 | GEN003950 | SV-26678r2_rule | Medium |
Description |
---|
Excessive permissions on the hosts.lpd (or equivalent) file may permit unauthorized modification. Unauthorized modifications could disrupt access to local printers from authorized remote hosts or permit unauthorized remote access to local printers. |
STIG | Date |
---|---|
SOLARIS 10 X86 SECURITY TECHNICAL IMPLEMENTATION GUIDE | 2018-04-10 |
Check Text ( C-38687r2_chk ) |
---|
Check the permissions of the print service configuration files. Procedure: # ls -lL /etc/apache/httpd-standalone-ipp.conf /etc/printers.conf /etc/smb.conf /etc/sfw/smb.conf /etc/samba/smb.conf /etc/sfw/samba/smb.conf If the permissions on any file include a '+', the file has an extended ACL and this is a finding. |
Fix Text (F-23917r2_fix) |
---|
Remove the extended ACLs from the files. # chmod A- /etc/apache/httpd-standalone-ipp.conf /etc/printers.conf /etc/smb.conf /etc/sfw/smb.conf /etc/samba/smb.conf /etc/sfw/samba/smb.conf |