RHEL 9 /etc/shadow- file must have mode 0000 or less permissive to prevent unauthorized access.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-257897
RHEL-09-232085
SV-257897r991589_rule
Medium
Description
The "/etc/shadow-" file is a backup file of "/etc/shadow", and as such, contains the list of local system accounts and password hashes. Protection of this file is critical for system security.