File: group.yml

package info (click to toggle)
scap-security-guide 0.1.78-1
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid
  • size: 114,600 kB
  • sloc: xml: 245,305; sh: 84,381; python: 33,093; makefile: 27
file content (15 lines) | stat: -rw-r--r-- 735 bytes parent folder | download | duplicates (5)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
documentation_complete: true

title: 'Secure Session Configuration Files for Login Accounts'

description: |-
    When a user logs into a Unix account, the system
    configures the user's session by reading a number of files. Many of
    these files are located in the user's home directory, and may have
    weak permissions as a result of user error or misconfiguration. If
    an attacker can modify or even read certain types of account
    configuration information, they can often gain full access to the
    affected user's account. Therefore, it is important to test and
    correct configuration file permissions for interactive accounts,
    particularly those of privileged users such as root or system
    administrators.