GEN000000-LNX00520 - The /etc/sysctl.conf file must have mode 0600 or less permissive.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The sysctl.conf file specifies the values for kernel parameters to be set on boot. These settings can affect the system's security.

Solution

Use the chmod command to change the mode of the /etc/sysctl.conf file.
# chmod 0600 /etc/sysctl.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V1R14_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CAT|II, CCI|CCI-000225, CSCv6|3.1, Rule-ID|SV-62963r1_rule, STIG-ID|GEN000000-LNX00520, Vuln-ID|V-4336

Plugin: Unix

Control ID: 7243703bc0390d72e94c971363d3c0bb0c4deda84ce4f3306c902257f7b4ff2b