Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-11987 | GEN001980 | SV-34922r1_rule | ECCD-1 ECCD-2 | Medium |
Description |
---|
A plus (+) in system accounts files causes the system to lookup the specified entry using NIS. If the system is not using NIS, no such entries should exist. |
STIG | Date |
---|---|
HP-UX 11.31 Security Technical Implementation Guide | 2015-06-12 |
Check Text ( C-37678r1_chk ) |
---|
Check system configuration files for plus (+) entries. Procedure: # find / -name .rhosts # cat / # find / -name .shosts # cat / # find / -name hosts.equiv # cat / # find / -name shosts.equiv # cat / # cat /etc/passwd | grep -v "^#" | grep "\+" # cat /etc/shadow | grep -v "^#" | grep "\+" # cat /etc/group | grep -v "^#" | grep "\+" If the .rhosts, .shosts, hosts.equiv, shosts.equiv, /etc/passwd, /etc/shadow, and/or /etc/group files contain a plus (+) and do not define entries for NIS+ netgroups, this is a finding. |
Fix Text (F-32918r1_fix) |
---|
Edit the .rhosts, .shosts, hosts.equiv, shosts.equiv, /etc/passwd, /etc/shadow, and/or /etc/group files and remove entries containing a plus (+). |