GEN000000-LNX001476 - The /etc/gshadow file must not contain any group password hashes.

Information

Group passwords are typically shared and should not be used.

Solution

Edit /etc/gshadow and change the password field to an exclamation point (!) to lock the group password.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-218167r603259_rule, STIG-ID|GEN000000-LNX001476, STIG-Legacy|SV-62767, STIG-Legacy|V-22349, Vuln-ID|V-218167

Plugin: Unix

Control ID: e2f4272d5d8c57767ea6cce309aa142ee51d4d9f6f5a3abb1d6ee26a0e36536c