GEN006120 - The /etc/samba/smb.conf file must be group-owned by root, bin, sys, or system.

Information

If the group owner of the 'smb.conf' file is not root or a system group, the file may be maliciously modified and the Samba configuration could be compromised.

Solution

Change the group owner of the smb.conf file.

Procedure:
# chgrp root smb.conf

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Group-ID|V-1056, Rule-ID|SV-37873r1_rule, STIG-ID|GEN006120, Vuln-ID|V-1056

Plugin: Unix

Control ID: 538c2fa29c202860f743dcc3d01709af14549578df53e7b2216d80a147b2b72e