GEN000000-LNX00320 - The system must not have special privilege accounts, such as shutdown and halt - '/etc/passwd - shutdown'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

If special privilege accounts are compromised, the accounts could provide privileges to execute malicious commands on a system.

Solution

Remove any special privilege accounts, such as shutdown and halt, from the /etc/passwd and /etc/shadow files using the 'userdel' or 'system-config-users' commands.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|I, CCI|CCI-000225, CCI|CCI-000764, Group-ID|V-4268, Rule-ID|SV-37181r1_rule, STIG-ID|GEN000000-LNX00320

Plugin: Unix

Control ID: d1407a681ab4827d6529c1ff178dcdaa9117dfc5c69933bfb0d269d839c67d68