GEN000000-AIX0085 - The /etc/netsvc.conf file must be root owned.

Information

The /etc/netsvc.conf file is used to specify the ordering of name resolution for the sendmail command, alias resolution for the sendmail command, and host name resolution routines. Malicious changes could prevent the system from functioning correctly or compromise system security.

Solution

Change the owner of the /etc/netsvc.conf file to root.
# chown root /etc/netsvc.conf

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Rule-ID|SV-38695r1_rule, STIG-ID|GEN000000-AIX0085, Vuln-ID|V-29491

Plugin: Unix

Control ID: 7599becdf37b59c0cd61b5025d5b3cafdca21a8bfbe31cad4d6686e15e528cd4