GEN006150 M6 - The /etc/smb.conf file must not have an extended ACL - '/etc/smb.conf'

Information

Excessive permissions could endanger the security of the Samba configuration file and, ultimately, the system and network.

Solution

Open a terminal session and enter the following command to remove the extended ACLs.

chmod -N /etc/smb.conf

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx_10.6_v1r3_stig_20130426.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3(4), CAT|II, CCI|CCI-000225, Rule-ID|SV-38135r1_rule, STIG-ID|GEN006150-M6, Vuln-ID|V-22497

Plugin: Unix

Control ID: e4c38fc7b4bcc30c7b9e19d26170ce72eeb4425517f1c9f28b0e2e1b6a1744b5