4.1.1.5 Ensure access on /etc/passwd is configured

Information

The /etc/passwd file contains a list of the users defined within the system.

The /etc/passwd file defines all users within the system. Since the file contains sensitive information, it must be properly secured.

Solution

Ensure correct ownership and permissions are in place for /etc/passwd :

chown root:security /etc/passwd
chmod u=rw,go=r /etc/passwd

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: a93679f40f5a2e35f8603ed020c2807c89bf02c931e31a3f88dc3503ae8d904e