SV-214274r612240_rule
V-214274
SRG-APP-000516-WSR-000174
AS24-U1-000970
CAT II
10
Ensure the SA or Web Manager account owns the "htpasswd" file.
Ensure permissions are set to "550".
Locate the htpasswd file by entering the following command:
find / -name htpasswd
Navigate to that directory.
Run: ls -l htpasswd
Permissions should be: r-x r - x - - - (550)
If permissions on "htpasswd" are greater than "550", this is a finding.
Verify the owner is the SA or Web Manager account.
If another account has access to this file, this is a finding.
V-214274
False
AS24-U1-000970
Locate the htpasswd file by entering the following command:
find / -name htpasswd
Navigate to that directory.
Run: ls -l htpasswd
Permissions should be: r-x r - x - - - (550)
If permissions on "htpasswd" are greater than "550", this is a finding.
Verify the owner is the SA or Web Manager account.
If another account has access to this file, this is a finding.
M
3996