PHTN-30-000112 - The Photon operating system must protect sshd configuration from unauthorized access.

Information

The 'sshd_config' file contains all the configuration items for sshd. Incorrect or malicious configuration of sshd can allow unauthorized access to the system, insecure communication, limited forensic trail, etc.

Solution

At the command line, run the following commands:

# chmod 600 /etc/ssh/sshd_config
# chown root:root /etc/ssh/sshd_config

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_7-0_Y24M01_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-256581r887417_rule, STIG-ID|PHTN-30-000112, Vuln-ID|V-256581

Plugin: Unix

Control ID: 9eead1ab89802cc7471add5181db1e9065d79561858f369a937bdc13864dac43