The operating system must reveal error messages only to authorized personnel.
An XCCDF Rule
Description
Proper file permissions and ownership ensures that only designated personnel in the organization can access error messages.
- ID
- SV-216202r958566_rule
- Version
- SOL-11.1-070240
- Severity
- Low
- References
- Updated
Remediation Templates
A Manual Procedure
The root role is required.
Change the permissions and owner on the /var/adm/messages file:
# chmod 640 /var/adm/messages
# chown root /var/adm/messages