GEN002260 - The system must be checked for extraneous device files at least weekly.

Information

If an unauthorized device is allowed to exist on the system, there is the possibility the system may perform unauthorized operations.
NOTE: Nessus has not performed this query, and this check is only provided for informational purposes.

Solution

Establish a weekly automated or manual process to create a list of device files on the system and determine if any files have been added, moved, or deleted since the last list was generated.

A list of device files can be generated with this command:
# find / -type b -o -type c > device-file-list

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

References: CAT|I, CCI|CCI-000318, Group-ID|V-923, Rule-ID|SV-37543r3_rule, STIG-ID|GEN002260

Plugin: Unix

Control ID: 37d679baacc6a94f1ef80101cb0bcf890907174660a28a543d8ca4a819a134b7