UCF STIG Viewer Logo

The snmpd.conf file must not have an extended ACL.


Overview

Finding ID Version Rule ID IA Controls Severity
V-227883 GEN005375 SV-227883r603266_rule Medium
Description
The snmpd.conf file contains authenticators and must be protected from unauthorized access and modification.
STIG Date
Solaris 10 X86 Security Technical Implementation Guide 2022-09-07

Details

Check Text ( C-30045r490045_chk )
Check the permissions of the SNMP configuration files.
# ls -lL/etc/sma/snmp/snmpd.conf /var/sma_snmp/snmpd.conf /etc/snmp/conf/snmpd.conf /usr/sfw/lib/sma_snmp/snmpd.conf
If the permissions include a "+", the file has an extended ACL and this is a finding.
Fix Text (F-30033r490046_fix)
Remove the extended ACL from the files.
# chmod A- /etc/sma/snmp/snmpd.conf /var/sma_snmp/snmpd.conf /etc/snmp/conf/snmpd.conf /usr/sfw/lib/sma_snmp/snmpd.conf