Skybox Appliance 7000 Quick Start Guide
Skybox version 11.7.100
70
RECOMMENDATION
SCORED
DESCRIPTION
6.1.10
ü
Ensure that no world writable files exist. Unix-based
systems support variable settings to control access to files.
World writable files are the least secure. See the
chmod
(2) man
page for more information.
Rationale: Data in world-writable files can be modified and
compromised by any user on the system. World writable
files may also indicate an incorrectly written script or
program that could potentially be the cause of a larger
compromise to the system’s integrity.
6.1.11
ü
Ensure that no unowned files or directories exist.
Sometimes when administrators delete users from the
password file they neglect to remove all files owned by
those users from the system.
Rationale: A new user who is assigned the deleted user’s
user ID or group ID may then end up ‘owning’ these files,
and thus have more access on the system than was
intended.
Note: For additional information, refer to the CIS CentOS 7 Linux Benchmark, v2.1.1. You can
download the benchmark