The Photon operating system must be configured so the "/etc/cron.allow" file is protected from unauthorized modification.
An XCCDF Rule
Description
If cron files and folders are accessible to unauthorized users, malicious jobs may be created.
- ID
- SV-256564r991589_rule
- Version
- PHTN-30-000095
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
At the command line, run the following commands:
# chmod 600 /etc/cron.allow
# chown root:root /etc/cron.allow