GEN005395 M6 - The /etc/syslog.conf file must not have an extended ACL - '/etc/syslog.conf'

Information

Unauthorized users must not be allowed to access or modify the /etc/syslog.conf file.

Solution

Open a terminal session and enter the following command to remove the extended ACLs.

chmod -N /etc/syslog.conf

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx_10.6_v1r3_stig_20130426.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3(4), CAT|II, CCI|CCI-000225, Rule-ID|SV-38133r1_rule, STIG-ID|GEN005395-M6, Vuln-ID|V-22454

Plugin: Unix

Control ID: 821103cfe9fb3a51079cd0a9b83c370c249627fa0593bb416f655be465cdecca