SOL-11.1-070170 - The system must not allow users to configure .forward files.

Information

Use of the .forward file poses a security risk in that sensitive data may be inadvertently transferred outside the organization. The .forward file also poses a secondary risk as it can be used to execute commands that may perform unintended actions.

Solution

The root role is required.

Remove any .forward files that are found.

# pfexec rm [filename]

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-216433r959010_rule, STIG-ID|SOL-11.1-070170, STIG-Legacy|SV-60937, STIG-Legacy|V-48065, Vuln-ID|V-216433

Plugin: Unix

Control ID: f652feb3f13b3a36e5a0ccfb91a9f8772db4914e7a8a3d3dac0dfae7e644e640