3.7.2.13 /var/adm/cron/log

Information

The /var/adm/cron/log file contains a log of all cron jobs run on the system.

Rationale:

The /var/adm/cron/log, records all cron jobs run on the system. The file permissions must ensure that it is accessible only to its owner and group.

Solution

Remove world read and write access to /var/adm/cron/log:

chmod o-rw /var/adm/cron/log
chown bin.cron /var/adm/cron/log

Default Value:

660

See Also

https://workbench.cisecurity.org/files/4119

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: b8477a05e43579c22f782de853f1e48e0dc01a38212700233d9c1ec017e24466