GEN004880 - The ftpusers file must exist.

Information

The ftpusers file contains a list of accounts not allowed to use FTP to transfer files. If this file does not exist, then unauthorized accounts can utilize FTP.

Solution

Create a /etc/ftpusers file containing a list of accounts not authorized for FTP.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Rule-ID|SV-28403r1_rule, STIG-ID|GEN004880, Vuln-ID|V-840

Plugin: Unix

Control ID: 6c4b5bc318ae44518c2894f5b926faefe8d8207d08e84f46d5f288ccd12356e0