RHEL-06-000270 - Remote file systems must be mounted with the nosuid option.

Information

NFS mounts should not present suid binaries to users. Only vendor-supplied suid executables should be installed to their default location on the local filesystem.

Solution

Add the 'nosuid' option to the fourth column of '/etc/fstab' for the line which controls mounting of any NFS mounts.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_6_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-218022r603264_rule, STIG-ID|RHEL-06-000270, STIG-Legacy|SV-50455, STIG-Legacy|V-38654, Vuln-ID|V-218022

Plugin: Unix

Control ID: d0c51797f9f502ce15c9975c72f5ad340a75ab12cc9c8cc3c814b46a127fa6c4