GEN000000-AIX00080 - The SYSTEM attribute must not be set to NONE for any account.

Information

The SYSTEM attribute in /etc/security/user defines the mechanisms used to authenticate specific user accounts. If the value is set to NONE, other attributes will be used to determine the authentication mechanisms, but if these attributes are not present, no authentication will be performed. To ensure authentication is always used for the system's accounts, the SYSTEM attribute must always be set to a valid setting other than NONE.

Solution

Edit /etc/security/user and change any SYSTEM=NONE settings to a valid authentication setting.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

References: 800-53|AC-6, 800-53|IA-2, CAT|I, CCI|CCI-000225, CCI|CCI-000764, Rule-ID|SV-12536r2_rule, STIG-ID|GEN000000-AIX00080, Vuln-ID|V-12035

Plugin: Unix

Control ID: d350784024df27195e8f6d9903aab92eb8c9137417ca021d15e3d38742419e58