GEN003480 - The at.deny file must be owned by root, bin, or sys.

Information

If the owner of the at.deny file is not set to root, bin, or sys, unauthorized users could be allowed to view or edit sensitive information contained within the file.

Solution

Change the owner of the at.deny file.
# chown root /var/adm/cron/at.deny

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Rule-ID|SV-27397r1_rule, STIG-ID|GEN003480, Vuln-ID|V-4368

Plugin: Unix

Control ID: 31967bb6da14c0519c926db7c304b9f251a281bb29d3153437d09bd14ea37ac0