GEN001980 - The hosts.equiv file must not contain a plus (+) without defining entries for NIS+ netgroups or LDAP - '~/hosts.equiv'

Information

A plus (+) in system accounts files causes the system to lookup the specified entry using NIS or LDAP. If the system is not using NIS or LDAP, no such entries should exist.

Solution

Edit the .rhosts, .shosts, hosts.equiv, shosts.equiv, /etc/passwd, /etc/security/passwd, and/or /etc/group files and remove entries containing a plus (+).

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-11987, Rule-ID|SV-38740r2_rule, STIG-ID|GEN001980, Vuln-ID|V-11987

Plugin: Unix

Control ID: dd0c1d5979a24859b06e00c0301c8a116fdea244b75f1ff5b1398081a6a649d7