Check: AIX7-00-002093
IBM AIX 7.x STIG:
AIX7-00-002093
(in versions v2 r9 through v2 r3)
Title
The AIX /etc/inetd.conf file must have a mode of 0640 or less permissive. (Cat II impact)
Discussion
Failure to set proper permissions of sensitive files or utilities may provide unauthorized users with the potential to access sensitive information or change the system configuration which could weaken the system's security posture.
Check Content
Check the group ownership of "/etc/inetd.conf": # ls -al /etc/inetd.conf The above command should yield the following output: -rw-r----- root system /etc/inetd.conf If the file has a mode more permissive than "0640", this is a finding.
Fix Text
Change the ownership of the file to root using command: # chmod 0640 /etc/inetd.conf
Additional Identifiers
Rule ID: SV-245565r755136_rule
Vulnerability ID: V-245565
Group Title: SRG-OS-000480-GPOS-00227
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
The organization implements the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |