UCF STIG Viewer Logo

All OL 8 local interactive users must have a home directory assigned in the "/etc/passwd" file.


Overview

Finding ID Version Rule ID IA Controls Severity
V-248638 OL08-00-010720 SV-248638r779480_rule Medium
Description
If local interactive users are not assigned a valid home directory, there is no place for the storage and control of files they should own.
STIG Date
Oracle Linux 8 Security Technical Implementation Guide 2022-12-06

Details

Check Text ( C-52072r779478_chk )
Verify local interactive users on OL 8 have a home directory assigned with the following command:

$ sudo pwck -r

user 'lp': directory '/var/spool/lpd' does not exist
user 'news': directory '/var/spool/news' does not exist
user 'uucp': directory '/var/spool/uucp' does not exist
user 'www-data': directory '/var/www' does not exist

Ask the System Administrator (SA) if any users found without home directories are local interactive users.

If the SA is unable to provide a response, check for users with a User Identifier (UID) of 1000 or greater with the following command:

$ sudo awk -F: '($3>=1000)&&($7 !~ /nologin/){print $1, $3, $6}' /etc/passwd

If any interactive users do not have a home directory assigned, this is a finding.
Fix Text (F-52026r779479_fix)
Assign home directories to all local interactive users on OL 8 that currently do not have a home directory assigned.