Differences
This shows you the differences between two versions of the page.
Last revisionBoth sides next revision | |||
ubuntu1604:1:1:15 [2017/05/02 03:53] – utworzono Piotr Kłoczewski | ubuntu1604:1:1:15 [2017/05/02 14:30] – Piotr Kłoczewski | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== 1.1.15 Ensure nosuid option set on /dev/shm partition (Scored) ====== | ====== 1.1.15 Ensure nosuid option set on /dev/shm partition (Scored) ====== | ||
- | **Profile Applicability:** \\ | + | =====Profile Applicability===== |
- | + | <code> | |
- | <note>Level 1 - Server | + | Level 1 - Server |
- | Level 1 - Workstation</ | + | Level 1 - Workstation |
- | + | </code> | |
- | **Description:** \\ | + | =====Description===== |
- | The '' | + | The '' |
- | **Rationale:** \\ | + | =====Rationale===== |
- | Setting this option on a file system prevents users from introducing privileged programs onto the system and allowing non-root users to execute them. \\ \\ | + | Setting this option on a file system prevents users from introducing privileged programs onto the system and allowing non-root users to execute them. |
- | **Audit:** \\ | + | =====Audit===== |
Run the following command and verify that the '' | Run the following command and verify that the '' | ||
< | < | ||
Line 15: | Line 15: | ||
tmpfs on /dev/shm type tmpfs (rw, | tmpfs on /dev/shm type tmpfs (rw, | ||
</ | </ | ||
- | \\ | + | =====Remediation===== |
- | **Remediation:** \\ | + | |
Edit the ''/ | Edit the ''/ | ||
Run the following command to remount ''/ | Run the following command to remount ''/ |