GEN001490 M6 - User home directories must not have extended ACLs - '/Users/*'

Information

Excessive permissions on home directories allow unauthorized access to user files.

Solution

Open a terminal session and enter the following command to set the permissions.

chmod -N <user home directory with extended ACL>

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx_10.6_v1r3_stig_20130426.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3(4), CAT|III, CCI|CCI-000225, Rule-ID|SV-38094r1_rule, STIG-ID|GEN001490-M6, Vuln-ID|V-22350

Plugin: Unix

Control ID: 325f210c9d7f7b1ec9750add233717b731f619272c237eaa3fc0fb4150188188