GEN006230 - Samba must be configured to use encrypted passwords.

Information

Samba must be configured to protect authenticators. If Samba passwords are not encrypted for storage, plain-text user passwords may be read by those with access to the Samba password file.

Solution

Edit the smb.conf file and change the encrypt passwords setting to yes.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_x86_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-227935r603266_rule, STIG-ID|GEN006230, STIG-Legacy|SV-40296, STIG-Legacy|V-22500, Vuln-ID|V-227935

Plugin: Unix

Control ID: f4e2bc78eb4ff8e0c57a5538eb4fa1cdc7476d38c9a93998e854d7a27e7e0c16