Skip to content

Verify Group Who Owns /etc/ipsec.d Directory

An XCCDF Rule

Description

To properly set the group owner of /etc/ipsec.d, run the command:

$ sudo chgrp root /etc/ipsec.d

Rationale

The ownership of the /etc/ipsec.d directory by the root group is important because this directory hosts Libreswan configuration. Protection of this file is critical for system security. Assigning the ownership to root ensures exclusive control of the Libreswan configuration.

ID
xccdf_org.ssgproject.content_rule_directory_groupowner_etc_ipsecd
Severity
Medium
References
Updated