4.7.2.6 /etc/group

Information

The /etc/group file contains a list of the groups defined within the system.

Rationale:

The /etc/group file defines basic group attributes. Since the file contains sensitive information, it must be properly secured.

Solution

Ensure correct ownership and permissions are in place for /etc/group:

chown root:security /etc/group
chmod u=rw,go=r /etc/group

Default Value:

644

See Also

https://workbench.cisecurity.org/benchmarks/13069

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

References: 800-53|CM-2, 800-53|CM-6, 800-53|CM-7, 800-53|CM-7(1), 800-53|CM-9, 800-53|SA-3, 800-53|SA-8, 800-53|SA-10, CSCv7|5.1

Plugin: Unix

Control ID: 54340e818d5503589b15cedf0aecef6bbd964ee285d652ef8db1b77bf61ab15b