The AIX user home directories must not have extended ACLs.
An XCCDF Rule
Description
Excessive permissions on home directories allow unauthorized access to user files.
- ID
- SV-215332r991592_rule
- Version
- AIX7-00-003019
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Remove the extended ACL from the user home directory and disable extended permissions:
# acledit <directory>