SOL-11.1-040450 - The operating system, upon successful logon, must display to the user the date and time of the last logon (access).

Information

Users need to be aware of activity that occurs regarding their account. Providing users with information regarding the date and time of their last successful login allows the user to determine if any unauthorized activity has occurred and gives them an opportunity to notify administrators.

Solution

The root role is required for this action.

# pfedit /etc/ssh/sshd_config

Locate the line containing:

PrintLastLog no

and place a comment sign ('# ')at the beginning of the line or delete the line

# PrintLastLog no

Restart the ssh service

# pfexec svcadm restart svc:/network/ssh

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_x86_V3R1_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-9, CAT|III, CCI|CCI-000052, Rule-ID|SV-216125r987814_rule, STIG-ID|SOL-11.1-040450, STIG-Legacy|SV-61003, STIG-Legacy|V-48131, Vuln-ID|V-216125

Plugin: Unix

Control ID: 8a32622f761b12a7da22892a5f3cb10d485fdbb7eaeadd3363b7ffec8e19c6c4