5.2.14 Ensure SSH access is limited

Information

Restricting which users can remotely access the system via SSH will help ensure that only authorized users access the system.

Solution

Edit the /etc/ssh/sshd_config file to set one or more of the parameter as follows:
AllowUsers <userlist>
AllowGroups <grouplist>
DenyUsers <userlist>
DenyGroups <grouplist>

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(7)(b), CSCv6|5.1, CSCv6|5.8

Plugin: Unix

Control ID: d3567117deb3a043607403ed572aceee0850d829bd7f5c6559692264d9b1bcec