GEN000920 - The root accounts home directory (other than /) must have mode 0700 or less permissive - other than / must have mode 0700.

Information

Permissions greater than 0700 could allow unauthorized users access to the root home directory.

Solution

The root home directory will be configured to have permission set of 0700 or less permissive. Do not change the protections of the / directory. Use the following command to change protections for the root home directory:

# chmod 0700 /rootdir.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-6, 800-53|CM-5(6), CAT|II, CCI|CCI-000225, CCI|CCI-001499, Rule-ID|SV-218246r603259_rule, STIG-ID|GEN000920, STIG-Legacy|SV-64359, STIG-Legacy|V-775, Vuln-ID|V-218246

Plugin: Unix

Control ID: 6ac4b071702ea6e9ee8c04eb0056d85ff800cc81eae359a531ad941c3e11e569