UCF STIG Viewer Logo

Crontabs must be owned by root or the crontab creator.


Overview

Finding ID Version Rule ID IA Controls Severity
V-11994 GEN003040 SV-27333r1_rule DCSL-1 Medium
Description
To protect the integrity of scheduled system jobs and prevent malicious modification to these jobs, crontab files must be secured.
STIG Date
SOLARIS 9 SPARC SECURITY TECHNICAL IMPLEMENTATION GUIDE 2015-10-01

Details

Check Text ( C-28469r1_chk )
List all crontabs on the system.
# ls -lL /var/spool/cron/crontabs/

If any crontab is not owned by root or the creating user, this is a finding.
Fix Text (F-11255r2_fix)
Change the crontab owner to root or the crontab creator.
# chown root