4.1.1.12 Ensure access on /var/adm/cron/log is configured

Information

The /var/adm/cron/log file contains a log of all cron jobs run on the system.

The /var/adm/cron/log records all cron jobs run on the system. The file permissions must ensure that it is accessible only to its owner and group.

Solution

Specify exact permissions and user.group ids to /var/adm/cron/log :

chmod ug=rw /var/adm/cron/log
chown bin.cron /var/adm/cron/log

See Also

https://workbench.cisecurity.org/benchmarks/10385

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: 4ed3a50d09259dd5de81e7bf713ef8f14b7f553b431c05c02c19a5f64930dc4a