3.7.2.12 /var/ct/RMstart.log

Information

The /var/ct/RMstart.log is the logfile used by RMC and can contain sensitive data that must be secured.

Rationale:

RMC provides a single monitoring and management infrastructure for both RSCT peer domains and management domains. Its generalized framework is used by cluster management tools to monitor, query, modify, and control cluster resources, /var/ct/RMstart.log is the logfile used by RMC and can contain sensitive data that must be secured.

Solution

Remove world read and write from /var/ct/RMstart.log:

chmod o-rw /var/ct/RMstart.log

Default Value:

644

See Also

https://workbench.cisecurity.org/files/4119

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: a26d35f655e8830e34cc417077d269dd97cd10416d2679c4fc9c3f131257fb64