GEN006330 - The /etc/news/passwd.nntp file must not have an extended ACL.

Information

Extended ACLs may provide excessive permissions on the /etc/news/passwd.nntp file, which may permit unauthorized access or modification to the NNTP configuration.

Solution

Remove the extended ACL from the file.
# setfacl --remove-all /etc/news/passwd.nntp

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|II, CCI|CCI-000225, Group-ID|V-22505, Rule-ID|SV-37733r1_rule, STIG-ID|GEN006330

Plugin: Unix

Control ID: 0749e3f18291cf3b1a07f270219224af8f2615c8fcc0c01b3732684e6f701100