GEN000880 - The root account must be the only account having an UID of 0.

Information

If an account has an UID of 0, it has root authority. Multiple accounts with an UID of 0 afford more opportunity for potential intruders to guess a password for a privileged account.

Solution

Remove or change the UID of accounts other than root that have UID 0.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-773r2_rule, STIG-ID|GEN000880, Vuln-ID|V-773

Plugin: Unix

Control ID: db7b4f1d1eb43c6b0f8ef8967c4527a1c8ab32826da5e0233140c2b6d2b0224c