Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-778 | GEN000980 | SV-37374r1_rule | Medium |
Description |
---|
Limiting the root account direct logins to only system consoles protects the root account from direct unauthorized access from a non-console device. |
STIG | Date |
---|---|
Red Hat Enterprise Linux 5 Security Technical Implementation Guide | 2017-03-01 |
Check Text ( C-36060r1_chk ) |
---|
Check /etc/securetty # more /etc/securetty If the file does not exist, or contains more than "console" or a single "tty" device this is a finding. |
Fix Text (F-31305r1_fix) |
---|
Create if needed and set the contents of /etc/securetty to a "console" or "tty" device. # echo console > /etc/securetty or # echo tty1 > /etc/securetty |