OL6-00-000066 - The system boot loader configuration file(s) must be group-owned by root.

Information

The 'root' group is a highly-privileged group. Furthermore, the group-owner of this file should not have any access privileges anyway.

Solution

The file '/boot/grub/grub.conf' should be group-owned by the 'root' group to prevent destruction or modification of the file. To properly set the group owner of '/boot/grub/grub.conf', run the command:

# chgrp root /boot/grub/grub.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_6_V2R7_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-208841r793626_rule, STIG-ID|OL6-00-000066, STIG-Legacy|SV-65145, STIG-Legacy|V-50939, Vuln-ID|V-208841

Plugin: Unix

Control ID: b33b8c79737a7d50209a33fcd504d4c28f4330b76dfcdcecf527799e71663c83