4.7.1.11 Ensure access to Xresources is configured

Information

The /etc/dt/config/*/Xresources file contains appearance and behavior resources for the Dtlogin login screen.

The /etc/dt/config/*/Xresources file defines the customization of the Dtlogin screen. The default file, /usr/dt/config/*/Xresources is unconditionally overwritten upon subsequent installation. It is recommended that the appropriate permissions and ownership are applied to secure the file.

Solution

Set the appropriate permissions and ownership on all Xresources files:

chown root:sys /etc/dt/config/*/Xresources
chmod u-x,go-wx /etc/dt/config/*/Xresources

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: bd5f8c8629e9feda1a0c8640f23aea08d350302630a3f1ef5fdccc394ccd3da7