GEN003770 - The services file must be group-owned by bin, sys, or system.

Information

Failure to give ownership of system configuration files to root or a system group provides the designated owner and unauthorized users with the potential to change the system configuration which could weaken the system's security posture.

Solution

Change the group owner of the services file.

Procedure:
# chgrp system /etc/services

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Group-ID|V-22427, Rule-ID|SV-39112r1_rule, STIG-ID|GEN003770, Vuln-ID|V-22427

Plugin: Unix

Control ID: 47436d36a889194bde3fc1a501931bd05efcddae4fd2a4ddd23c40bfd310b22e