2.31 - Deny the JBoss process owner console access

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The JBoss Application Server process owner should not have interactive console login access

Solution

To prevent users from gaining interactive access to the system console, simply ensure that they are assigned no shell interpreter via the /etc/passwd file. For instance, a properly configured passwd entry for the JBoss account owner may resemble this:

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II

Plugin: Unix

Control ID: d3418fedb3cbe07d7dc7fb7eca72aba626a55fa1a9eafecd6c594e7686a3a378