Oracle Solaris System Administration (MOSC)

MOSC Banner

Change default permissions for log files.

edited Jan 11, 2012 5:48PM in Oracle Solaris System Administration (MOSC) 2 comments
I am in the process of securing a Solaris 10 Server.  As part of the hardening process I would like eliminate world/other permissions on log files (e.g. /var/adm/messages). Now, at first glance this may sound easy simply run chmod and remove the perms.  However, it is a little more complicated. Logs such as lastlog, messages, syslog, wtmpx are created by the syslogd process ( I believe) so I need to determine how the default umask is set on these files and how do I change it.

So, if anyone can help me determine how the following log files umask is set and changed I would greatly appreciate it:

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center