GEN000340 - UIDs reserved for system accounts must not be assigned to non-system accounts.

Information

Reserved UIDs are typically used by system software packages. If non-system accounts have UIDs in this range, they may conflict with system software, possibly leading to the user having permissions to modify system files.

Solution

Using the usermod command, change the UID numbers for non-system accounts with reserved UIDs (those less or equal to 128).
# usermod -u <uid> login
Alternatively, smit can be used for this same purpose.
#smitty users

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-38669r1_rule, STIG-ID|GEN000340, Vuln-ID|V-11946

Plugin: Unix

Control ID: ef331f85504030ae6743a788fbdee535550bc42d5866e73facf640648263d836