E6.1.8 Ensure permissions on /etc/gshadow- are configured
Audit#
Run the following command to verify /etc/gshadow- is mode 640 or more restrictive, Uid is 0/root and Gid is 0/root:
Example:
Remediation#
Run one of the following commands to set ownership of /etc/gshadow- to root and group to either root or shadow:
-OR-
Run the following command to remove excess permissions form /etc/gshadow-:
Default Value:
/etc/gshadow- 640 0/root 42/shadow