{"description": "The <tt>all_squash</tt> maps all uids and gids to an anonymous user.\nThis should be disabled by removing any instances of the\n<tt>all_squash</tt> option from the file <tt>/etc/exports</tt>.", "rationale": "The all_squash option maps all client requests to a single anonymous\nuid/gid on the NFS server, negating the ability to track file access\nby user ID.", "severity": "low", "references": {}, "control_references": {}, "components": [], "identifiers": {}, "ocil_clause": "there is output", "ocil": "To verify all squashing has been disabled, run the following command:\n<pre>$ grep all_squash /etc/exports</pre>", "oval_external_content": null, "fixtext": "", "checktext": "", "vuldiscussion": "", "srg_requirement": "", "warnings": [], "conflicts": [], "requires": [], "policy_specific_content": {}, "platform": null, "platforms": [], "sce_metadata": {}, "inherited_platforms": [], "cpe_platform_names": [], "inherited_cpe_platform_names": [], "bash_conditional": null, "fixes": {}, "title": "Ensure All-Squashing Disabled On All Exports", "definition_location": "/aptdata/openscap/scap-security-guide/linux_os/guide/services/nfs_and_rpc/nfs_configuring_servers/no_all_squash_exports/rule.yml", "template": null}