GEN000000-LNX00320 - The system must not have special privilege accounts, such as shutdown and halt - /etc/passwd shutdown'

Information

If special privilege accounts are compromised, the accounts could provide privileges to execute malicious commands on a system.

Solution

Remove any special privilege accounts, such as shutdown and halt, from the /etc/passwd and /etc/shadow files using the 'userdel' or 'system-config-users' commands.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V1R14_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|I, CCI|CCI-000225, CCI|CCI-000764, Rule-ID|SV-62797r1_rule, STIG-ID|GEN000000-LNX00320, Vuln-ID|V-4268

Plugin: Unix

Control ID: 79b875f9fce35e7205eca980e44064ec8bf95a3befe4e3f017f3e55c309494fc