7.4 Set Default Group for root Account

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

For Solaris 9 and earlier, the default group for the root account is the 'other' group, which may be shared by many other accounts on the system. Solaris 10 has adopted GID 0 (group 'root') as default group for the root account.

Solution

Perform the following to implement the recommended state-

passmgmt -m -g 0 root

See Also

https://benchmarks.cisecurity.org/tools2/solaris/CIS_Oracle_Solaris_10_Benchmark_v5.2.0.pdf

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-2

Plugin: Unix

Control ID: bc7650028e55d9345c99a1aa74fab2d5bc016ca9a0e3175a9900dce1b089aeea