GEN000000-LNX001476 - The /etc/gshadow file must not contain any group password hashes.

Information

Group passwords are typically shared and should not be used.

Solution

Edit /etc/gshadow and change the password field to an exclamation point (!) to lock the group password.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V1R14_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5, CAT|II, CCI|CCI-000366, Rule-ID|SV-62767r1_rule, STIG-ID|GEN000000-LNX001476, Vuln-ID|V-22349

Plugin: Unix

Control ID: 630e4c3ecde1a065360432a84df5ce85c32191ee521468dde70274aafbb6e749