1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33
|
documentation_complete: true
title: Verify Permissions On /etc/sudoers File
description: '{{{ describe_file_permissions(file="/etc/sudoers", perms="0440") }}}'
rationale: |-
Setting correct permissions on the /etc/sudoers file is important
because this file hosts sudo configuration. Protection of this
file is critical for system security. Restricting the permissions
ensures exclusive control of the sudo configuration.
severity: medium
identifiers:
cce@rhel8: CCE-86419-9
cce@rhel9: CCE-86424-9
cce@rhel10: CCE-90690-9
ocil_clause: '{{{ ocil_clause_file_permissions(file="/etc/sudoers", perms="0440") }}}'
ocil: |-
{{{ ocil_file_permissions(file="/etc/sudoers", perms="0440") }}}
fixtext: '{{{ fixtext_file_permissions(file="/etc/sudoers", mode="0440") }}}'
srg_requirement: '{{{ srg_requirement_file_permission(file="/etc/sudoers", mode="0440") }}}'
template:
name: file_permissions
vars:
filepath: /etc/sudoers
filemode: '0440'
|