RHEL-06-000066 - The system boot loader configuration file(s) must be group-owned by root.

Information

The 'root' group is a highly-privileged group. Furthermore, the group-owner of this file should not have any access privileges anyway.

Solution

The file '/boot/grub/grub.conf' should be group-owned by the 'root' group to prevent destruction or modification of the file. To properly set the group owner of '/boot/grub/grub.conf', run the command:

# chgrp root /boot/grub/grub.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_6_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-217902r603264_rule, STIG-ID|RHEL-06-000066, STIG-Legacy|SV-50382, STIG-Legacy|V-38581, Vuln-ID|V-217902

Plugin: Unix

Control ID: 4c467a2e591d0e650c36aaa1bb25a188728ff1e51e6110973a2f0dffb1a92483