SV-215210r508663_rule
V-215210
SRG-OS-000480-GPOS-00227
AIX7-00-001056
CAT II
10
Edit "/etc/filesystems" and add the "nosuid" option for all NFS file systems.
Remount the NFS file systems to make the change take effect.
Check the system for NFS mounts not using the "nosuid" option using command:
# lsfs -v nfs
Name Nodename Mount Pt VFS Size Options Auto Accounting
/home/doej -- /mount/doej nfs 786432 -- yes no
If the "mounted" file systems do not have the "nosuid option", this is a finding.
V-215210
False
AIX7-00-001056
Check the system for NFS mounts not using the "nosuid" option using command:
# lsfs -v nfs
Name Nodename Mount Pt VFS Size Options Auto Accounting
/home/doej -- /mount/doej nfs 786432 -- yes no
If the "mounted" file systems do not have the "nosuid option", this is a finding.
M
4012