GEN004880 - The ftpusers file must exist.

Information

The ftpusers file contains a list of accounts not allowed to use FTP to transfer files. If this file does not exist, then unauthorized accounts can utilize FTP.

Solution

Create an ftpusers file appropriate for the running FTP service.
For gssftp:
Create an /etc/ftpusers file containing a list of accounts not authorized for FTP.

For vsftp:
Create an /etc/vsftpd.ftpusers or /etc/vsftpd/ftpusers (as appropriate) file containing a list of accounts not authorized for FTP.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000225, Group-ID|V-840, Rule-ID|SV-51983r1_rule, STIG-ID|GEN004880

Plugin: Unix

Control ID: 69199fedefebdb8cc38e02d0fb17cdb35f508dd2c83b99e8af2d97f6492ec238