6.2.9 Ensure users own their home directories

Information

The user home directory is space defined for the particular user to set local environment
variables and to store personal files.

Rationale:

Since the user is accountable for files stored in the user home directory, the user must be
the owner of the directory.

Solution

Change the ownership of any home directories that are not owned by the defined user to
the correct user.

Notes:

On some distributions the /sbin/nologin should be replaced with /usr/sbin/nologin.

See Also

https://workbench.cisecurity.org/files/2420