During our annual security scan, it was detected that in the Agent spool directory files were being created with world-writeable permissions. This is considered a security violation.
Can something be adjusted to avoid this?
Workload Automation Agent - Unix/Linux
Using the r11.3 SP4 agent or above you can set oscomponent.umask and oscomponent.defaultfile.permission parameters in agentparm.txt file to control the default permissions for the agent's spool files.
Example:
oscomponent.umask=022
oscomponent.defaultfile.permission=0644