4.7.2.9 /etc/passwd

Information

The /etc/passwd file contains a list of the users defined within the system.

Rationale:

The /etc/passwd file defines all users within the system. Since the file contains sensitive information, it must be properly secured.

Solution

Ensure correct ownership and permissions are in place for /etc/passwd:

chown root:security /etc/passwd
chmod u=rw,go=r /etc/passwd

Default Value:

644

See Also

https://workbench.cisecurity.org/benchmarks/13069

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

References: 800-53|CM-2, 800-53|CM-6, 800-53|CM-7, 800-53|CM-7(1), 800-53|CM-9, 800-53|SA-3, 800-53|SA-8, 800-53|SA-10, CSCv7|5.1

Plugin: Unix

Control ID: f3dc741d1eddd42f264c41179e8698f5a704a4763d6dabf6917240e0f5bdc910