Rule ID
SV-45139r2_rule
Version
V1R12
CCIs
If the skeleton files are not protected, unauthorized personnel could change user startup parameters and possibly jeopardize user files.
Verify the skeleton files are group-owned by root, bin or sys. Procedure: # ls -alL /etc/skel If a skeleton file is not group-owned by root, bin or sys this is a finding.
Change the group-owner of the skeleton file to root, bin or sys. Procedure: # chgrp <group> /etc/skel/<skeleton file> or: # cd /etc/skel # ls -L /etc/skel|xargs stat -L -c %G:%n|egrep -v "^(root|bin|sys):"|cut -d: -f2|xargs chgrp root will change the group of all files not already in one of the approved groups to root.