STIGQter STIGQter: STIG Summary: IBM AIX 7.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 23 Apr 2021:

AIX time synchronization configuration file must be group-owned by bin, or system.

DISA Rule

SV-215273r508663_rule

Vulnerability Number

V-215273

Group Title

SRG-OS-000480-GPOS-00227

Rule Version

AIX7-00-002082

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Change the group owner of the files in "/etc/news" to "system" using:
# chgrp system /etc/ntp.conf

Check Contents

Check "/etc/ntp.conf" file group ownership:
# ls -al /etc/ntp.conf

The above command should yield the following output:
-rw-r----- 1 root system 993 Aug 25 18:26 /etc/ntp.conf

If the file is not group-owned by "system", this is a finding.

Vulnerability Number

V-215273

Documentable

False

Rule Version

AIX7-00-002082

Severity Override Guidance

Check "/etc/ntp.conf" file group ownership:
# ls -al /etc/ntp.conf

The above command should yield the following output:
-rw-r----- 1 root system 993 Aug 25 18:26 /etc/ntp.conf

If the file is not group-owned by "system", this is a finding.

Check Content Reference

M

Target Key

4012

Comments