1.1.15 Add nosuid Option to /dev/shm Partition

Information

Configuration Level : Level-I

Solution

Edit the /etc/fstab file and add nosuid to the fourth field (mounting options). Look for entries that have mount points that contain /dev/shm. See the fstab(5) manual page for more information.# mount -o remount,nosuid /dev/shm

See Also

https://workbench.cisecurity.org/files/214

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(10), CCE|CCE-14306-5, CSCv6|3.1

Plugin: Unix

Control ID: b759a0574b4a16b4fddae003e4813fc4b3eb74b776d45f05e48e38ad269fc149