GEN005365 - The snmpd.conf file must be group-owned by root, sys, or bin - /etc/snmp/conf/snmpd.conf

Information

The snmpd.conf file contains authenticators and must be protected from unauthorized access and modification. If the file is not group-owned by a system group, it may be subject to access and modification from unauthorized users.

Solution

Change the group ownership of the SNMP configuration file.

Procedure:
# chgrp root /etc/sma/snmp/snmpd.conf /var/sma_snmp/snmpd.conf /etc/snmp/conf/snmpd.conf /usr/sfw/lib/sma_snmp/snmpd.conf

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_x86_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-227882r603266_rule, STIG-ID|GEN005365, STIG-Legacy|SV-26733, STIG-Legacy|V-22451, Vuln-ID|V-227882

Plugin: Unix

Control ID: ffba6e7b411c8fc982bf635965d8ff6536d6df852d20c0ba0af985a0e2a8fa7c