Check: SOL-11.1-100010
Solaris 11 SPARC STIG:
SOL-11.1-100010
(in versions v3 r2 through v1 r10)
Title
The /etc/zones directory, and its contents, must have the vendor default owner, group, and permissions. (Cat III impact)
Discussion
Incorrect ownership can result in unauthorized changes or theft of data.
Check Content
This check applies to the global zone only. Determine the zone that you are currently securing. # zonename If the command output is "global", this check applies. Check the ownership of the files and directories. # pkg verify system/zones The command should return no output. If output is produced, this is a finding.
Fix Text
This check applies to the global zone only. Determine the zone that you are currently securing. # zonename If the command output is "global", this check applies. The Software Installation profile is required. Change the ownership and permissions of the files and directories to the factory default. # pkg fix system/zones
Additional Identifiers
Rule ID: SV-216474r959010_rule
Vulnerability ID: V-216474
Group Title: SRG-OS-000480
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
Implement the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |