Skip to content

The Photon operating system must be configured so the "/etc/cron.allow" file is protected from unauthorized modification.

An XCCDF Rule

Description

If cron files and folders are accessible to unauthorized users, malicious jobs may be created.

ID
SV-256564r991589_rule
Version
PHTN-30-000095
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

At the command line, run the following commands:

# chmod 600 /etc/cron.allow
# chown root:root /etc/cron.allow