GEN000000-LNX00320 - The system must not have special privilege accounts, such as shutdown and halt - '/etc/passwd - shutdown'

Information

If special privilege accounts are compromised, the accounts could provide privileges to execute malicious commands on a system.

Solution

Remove any special privilege accounts, such as shutdown and halt, from the /etc/passwd and /etc/shadow files using the 'userdel' or 'system-config-users' commands.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

References: 800-53|AC-6, 800-53|IA-2, CAT|I, CCI|CCI-000225, CCI|CCI-000764, Group-ID|V-4268, Rule-ID|SV-37181r1_rule, STIG-ID|GEN000000-LNX00320, Vuln-ID|V-4268

Plugin: Unix

Control ID: bb388ab9fe65d662ab25d0bba9c3370c2285d6192ab3a42d4f73f1ed33e96962