GEN004510 - The SMTP service log file must not have an extended ACL.

Information

If the SMTP service log file has an extended ACL, unauthorized users may be allowed to access or to modify the log file.

Solution

This fix is applicable to both Postfix and sendmail servers.
Remove the extended ACL from the file.
# setfacl --remove-all <log file>

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Group-ID|V-22442, Rule-ID|SV-37503r3_rule, STIG-ID|GEN004510, Vuln-ID|V-22442

Plugin: Unix

Control ID: d91f87b90352f4309d576da883a1746d45773719a4266cceff2084c7af07be8c