Verify ownership of System Login Banner
An XCCDF Rule
Description
To properly set the owner of /etc/issue
, run the command:
$ sudo chown root /etc/issue
Rationale
Display of a standardized and approved use notification before granting
access to the operating system ensures privacy and security notification
verbiage used is consistent with applicable federal laws, Executive Orders,
directives, policies, regulations, standards, and guidance.
Proper ownership will ensure that only root user can modify the banner.
- ID
- xccdf_org.ssgproject.content_rule_file_owner_etc_issue
- Severity
- Medium
- References
- Updated
Remediation - Ansible
- name: Find /etc/issue.d/ file(s) matching ^.*$ recursively
command: find -H /etc/issue.d/ -type f ! -uid 0 -regex "^.*$"
register: files_found
changed_when: false
failed_when: false
check_mode: false
Remediation - Shell Script
find /etc/issue.d/ -type f ! -uid 0 -regex '^.*$' -exec chown 0 {} \;