OL 8 must use a separate file system for "/tmp".

STIG ID: OL08-00-010543  |  SRG: SRG-OS-000480-GPOS-00227 | Severity: medium |  CCI: CCI-000366

Vulnerability Discussion

The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.

Check

The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.

Check Text: Verify that a separate file system/partition has been created for non-privileged local interactive user home directories.

$ sudo grep /tmp /etc/fstab

/dev/mapper/ol-tmp /tmp xfs defaults,nodev,nosuid,noexec 0 0

If a separate entry for the file system/partition "/tmp" does not exist, this is a finding.

Fix

Migrate the "/tmp" directory onto a separate file system/partition.