ansible-hardening/doc/source/stig-notes/V-38559.rst
Major Hayden a676e37a84 Docs overhaul
* Docs are now ordered by STIG ID number to make them easier to browse.
* Deployer notes are better organized.
* Script + CSV added for automated documentation generation.

Implements: blueprint security-hardening

Change-Id: Ib87bec701eddf1601574f4e027f301c775e5e1cd
2015-10-14 13:42:52 +00:00

17 lines
768 B
ReStructuredText

V-38559: The audit system must be configured to audit all discretionary access control permission modifications using lremovexattr.
-----------------------------------------------------------------------------------------------------------------------------------
The changing of file permissions could indicate that a user is attempting to
gain access to information that would otherwise be disallowed. Auditing DAC
modifications can facilitate the identification of patterns of abuse among
both authorized and unauthorized users.
Details: `V-38559 in STIG Viewer`_.
.. _V-38559 in STIG Viewer: https://www.stigviewer.com/stig/red_hat_enterprise_linux_6/2015-05-26/finding/V-38559
Notes for deployers
~~~~~~~~~~~~~~~~~~~
.. include:: developer-notes/V-38559.rst