4.1.1.13 Ensure access on /var/ct/RMstart.log is configured

Information

The /var/ct/RMstart.log is the logfile used by RMC and can contain sensitive data that must be secured.

RMC provides a single monitoring and management infrastructure for both RSCT peer domains and management domains. Its generalized framework is used by cluster management tools to monitor, query, modify, and control cluster resources, /var/ct/RMstart.log is the logfile used by RMC and can contain sensitive data that must be secured.

Solution

Remove world read and write from /var/ct/RMstart.log :

chmod o-rw /var/ct/RMstart.log

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: 0c5a2a483a7145cf6b51bd24a8b89f2397b664adb7e66b674e77ae728be56039