GEN005365 - The snmpd.conf file must be group-owned by root, sys, or bin - /etc/snmp/conf/snmpd.conf

Information

The snmpd.conf file contains authenticators and must be protected from unauthorized access and modification. If the file is not group-owned by a system group, it may be subject to access and modification from unauthorized users.

Solution

Change the group ownership of the SNMP configuration file.

Procedure:
# chgrp root /etc/sma/snmp/snmpd.conf /var/sma_snmp/snmpd.conf /etc/snmp/conf/snmpd.conf /usr/sfw/lib/sma_snmp/snmpd.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-226975r603265_rule, STIG-ID|GEN005365, STIG-Legacy|SV-26733, STIG-Legacy|V-22451, Vuln-ID|V-226975

Plugin: Unix

Control ID: 0dea8bc07bdb5cc90e015e95dea7acaa38d4cb191d16c2fb14cd346e3a2636bc