Check: GEN003620
HP-UX 11.31 STIG:
GEN003620
(in versions v1 r19 through v1 r13)
Title
A separate file system must be used for user home directories (such as /home or equivalent). (Cat III impact)
Discussion
The use of separate file systems for different paths can protect the system from failures resulting from the / file system becoming full or failing.
Check Content
Determine if the /home path is a separate filesystem. # cat /etc/fstab | tr '\011' ' ' | tr -s ' ' | sed -e 's/^[ \t]*//' | \ grep -v "^#" | cut -f 2,2 -d " " | grep "^/home" | grep -v "/home/" If the above command returns nothing, /home is not on a separate filesystem and this is a finding.
Fix Text
Migrate the /home (or equivalent) path onto a separate file system.
Additional Identifiers
Rule ID: SV-35048r1_rule
Vulnerability ID: V-12003
Group Title: GEN003620
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001208 |
The organization partitions the information system into components residing in separate physical domains (or environments) as deemed necessary. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |