GEN001290 - All manual page files must not have extended ACLs - '/usr/share/man/*'

Information

If manual pages are compromised, misleading information could be inserted, causing actions that may compromise the system.

Solution

Remove the extended ACLs from system manual page file(s) and disable extended permissions.

#acledit < directory >/< file >

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R13_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|III, CCI|CCI-000225, Group-ID|V-22316, Rule-ID|SV-38688r1_rule, STIG-ID|GEN001290

Plugin: Unix

Control ID: fea1d3a5ba08c6030f528e697b3995aec0aeac5782a50085960758e3ec48cffe