8.4 Enable a Warning Banner for the GNOME Service

Information

The GNOME Display Manager is used for login session management. See the manual page gdm(1) for more information on configuration of the settings, which can be user or group specific.

Rationale:

The remediation action for this item sets a pre-login warning message for GDM users. Additional methods can be employed to display a similar message to a user post-authentication. For more information, see the Oracle Solaris 11 Security Guidelines document.

Solution

Perform the following to implement the recommended state:
Edit the /etc/gdm/Init/Default file to add the following content before the last line of the file.

/usr/bin/zenity --text-info --width=800 --height=300 --title='Security Message' --filename=/etc/issue

See Also

https://workbench.cisecurity.org/benchmarks/4777

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

References: 800-53|CM-2, 800-53|CM-6, 800-53|CM-7, 800-53|CM-7(1), 800-53|CM-9, 800-53|SA-3, 800-53|SA-8, 800-53|SA-10, CSCv7|5.1

Plugin: Unix

Control ID: 3adfac7d02f7c9c4dd7e0ef4325ec4a60f5989eefdd373551cab94b1d2e49312