SV-216214r603268_rule
V-216214
SRG-OS-000480
SOL-11.1-080090
CAT II
10
The root role is required.
This action applies to the global zone only. Determine the zone that you are currently securing.
# zonename
If the command output is "global", this action applies.
Determine the location of the system dump directory.
# dumpadm | grep directory
Change the owner of the kernel core dump data directory to root.
# chown root [savecore directory]
In Solaris 11, /var/crash is linked to /var/share/crash.
The root role is required.
This check applies to the global zone only. Determine the zone that you are currently securing.
# zonename
If the command output is "global", this check applies.
Determine the location of the system dump directory.
# dumpadm | grep directory
Check the ownership of the kernel core dump data directory.
# ls -ld [savecore directory]
If the kernel core dump data directory is not owned by root, this is a finding.
In Solaris 11, /var/crash is linked to /var/share/crash.
V-216214
False
SOL-11.1-080090
The root role is required.
This check applies to the global zone only. Determine the zone that you are currently securing.
# zonename
If the command output is "global", this check applies.
Determine the location of the system dump directory.
# dumpadm | grep directory
Check the ownership of the kernel core dump data directory.
# ls -ld [savecore directory]
If the kernel core dump data directory is not owned by root, this is a finding.
In Solaris 11, /var/crash is linked to /var/share/crash.
M
4021