Check: GEN002960
SOLARIS 9 SPARC STIG:
GEN002960
(in version v1 r12)
Title
Access to the cron utility must be controlled using the cron.allow and/or cron.deny file(s). (Cat II impact)
Discussion
The cron facility allows users to execute recurring jobs on a regular and unattended basis. The cron.allow file designates accounts allowed to enter and execute jobs using the cron facility. If neither cron.allow nor cron.deny exists, then any account may use the cron facility. This may open the facility up for abuse by system intruders and malicious users.
Check Content
Fix Text
Create /etc/cron.d/cron.allow and/or /etc/cron.d/cron.deny with appropriate content.
Additional Identifiers
Rule ID: SV-27317r1_rule
Vulnerability ID: V-974
Group Title: GEN002960
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000225 |
Employ the principle of least privilege, allowing only authorized accesses for users (or processes acting on behalf of users) which are necessary to accomplish assigned organizational tasks. |
Controls
Number | Title |
---|---|
AC-6 |
Least Privilege |