GEN008780 - The systems boot loader configuration file(s) must be group-owned by root, bin, sys, or system - s must be group-owned by root, bin, sys, or system.

Information

The system's boot loader configuration files are critical to the integrity of the system and must be protected. Unauthorized modifications resulting from improper group ownership may compromise the boot loader configuration.

Solution

Change the group ownership of the file.
# chgrp root /boot/grub/grub.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-6, 800-53|CM-5(6), CAT|II, CCI|CCI-000225, CCI|CCI-001499, Rule-ID|SV-218729r603259_rule, STIG-ID|GEN008780, STIG-Legacy|SV-63069, STIG-Legacy|V-22587, Vuln-ID|V-218729

Plugin: Unix

Control ID: eebe00f2082ab5e3ee1235d70d16e3cb46dc5e0828ffdfd89ace17c1f0e9f6ac