Rule ID
SV-269301r1050183_rule
Version
V1R6
CCIs
The "/tmp" partition is used as temporary storage by many programs. Placing "/tmp" in its own partition enables the setting of more restrictive mount options, which can help protect programs that use it.
Verify that a separate file system/partition has been created for "/tmp" with the following command: $ mount | grep ' /tmp ' tmpfs on /tmp type tmpfs (rw,nosuid,nodev,noexec,relatime,seclabel,size=2097152k,inode64) If a separate entry for "/tmp" is not in use, this is a finding.
Migrate the "/tmp" path onto a separate file system.