SOL-11.1-070240 - The operating system must reveal error messages only to authorized personnel.

Information

Proper file permissions and ownership ensures that only designated personnel in the organization can access error messages.

Solution

The root role is required.

Change the permissions and owner on the /var/adm/messages file:

# chmod 640 /var/adm/messages
# chown root /var/adm/messages
# chgrp root /var/adm/messages

Change the permissions and owner on the /var/adm directory:

# chmod 750 /var/adm
# chown root /var/adm
# chgrp sys /var/adm

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-11b., CAT|III, CCI|CCI-001314, Rule-ID|SV-216439r958566_rule, STIG-ID|SOL-11.1-070240, STIG-Legacy|SV-60905, STIG-Legacy|V-48033, Vuln-ID|V-216439

Plugin: Unix

Control ID: 11deac5b4302715cbe0f34fb5fd05604acc6433267bb9cd0c74b90211c883f01