4.7.4.4 Ensure access to /etc/mail/sendmail.cf is configured

Information

The access controls for /etc/mail/sendmail.cf are applied.

The /etc/mail/sendmail.cf file is used by the sendmail daemon to determine its default configuration. This file must be protected from unauthorized access and modifications.

Solution

Set the recommended permissions and ownership on /etc/mail/sendmail.cf :

chmod u=rw,g=r,o= /etc/mail/sendmail.cf
chown root.system /etc/mail/sendmail.cf
trustchk -u /etc/mail/sendmail.cf mode owner group

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: 1cf2fdd9a05b44eeab32fdc2cc6db421af10964f0ede08d111076a3b798b3b59