1.1.13 Ensure separate partition exists for /home

Information

If the system is intended to support local users, create a separate partition for the /home directory to protect against resource exhaustion and restrict the type of files that can be stored under /home.

Solution

For new installations, during installation create a custom partition setup and specify a separate partition for /home.For systems that were previously installed, create a new partition and configure /etc/fstab as appropriate.

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Unix

Control ID: 4c82156171eab50d287048cc142cd956aa28cd4832b71fb5ced6d5c199c0943a