Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

DevSec Linux Baseline os-05 #90

Merged
merged 1 commit into from Jun 22, 2017
Merged

Conversation

mcgege
Copy link
Member

@mcgege mcgege commented Jun 22, 2017

/etc/login.defs should be readable by group and other

@bitvijays
Copy link
Contributor

@mcgege @artem-sidorenko Looks alright to me, as it is in sync with Linux Baseline. However, I couldn't find any reference in the CIS Benchmarks for Linux ( I might be wrong ). Or any other reference that it should 0444 rather than 0400.

Copy link
Member

@artem-sidorenko artem-sidorenko left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@bitvijays in chef-os-hardening and ansible-os-hardnening its 0444 too. I checked the defaults on the ubuntu/centos distros, they are all word-readable. I assume if this is not the case, something from password-suite of distros might break

@mcgege thanks for fixing this!

@artem-sidorenko artem-sidorenko merged commit 9211856 into dev-sec:master Jun 22, 2017
@bitvijays
Copy link
Contributor

@mcgege @artem-sidorenko Thanks :)

@mcgege mcgege deleted the baseline-os-05 branch July 3, 2017 06:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants