SV-207535r612253_rule
V-207535
SRG-APP-000516-DNS-000105
BIND-9X-001003
CAT II
10
Configure the BIND 9.x process to run as a non-privileged user.
Restart the BIND 9.x process.
Verify the BIND 9.x process is not running as root:
# ps -ef | grep named
named 3015 1 0 12:59 ? 00:00:00 /usr/sbin/named -u named -t /var/named/chroot
If the output shows "/usr/sbin/named -u root", this is a finding.
V-207535
False
BIND-9X-001003
Verify the BIND 9.x process is not running as root:
# ps -ef | grep named
named 3015 1 0 12:59 ? 00:00:00 /usr/sbin/named -u named -t /var/named/chroot
If the output shows "/usr/sbin/named -u root", this is a finding.
M
2926