6.2.3 Ensure no legacy '+' entries exist in /etc/shadow

Information

These entries may provide an avenue for attackers to gain privileged access on the system.

Solution

Remove any legacy '+' entries from /etc/shadow if they exist.

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2, CSCv6|16.9

Plugin: Unix

Control ID: 51301f630ff09f751f9ced6deacd6e4c405c4765623ba069736548213e43d374