Check: GEN000000-LNX00320
VMware ESX 3 Server:
GEN000000-LNX00320
(in version v1 r2)
Title
The system must not have special privilege accounts, such as shutdown and halt. (Cat I impact)
Discussion
If special privilege accounts are compromised, the accounts could provide privileges to execute malicious commands on a system.
Check Content
Perform the following to check for unnecessary privileged accounts: # more /etc/passwd Some examples of unnecessary privileged accounts include halt, shutdown, reboot and who.
Fix Text
Remove any special privilege accounts, such as shutdown and halt, from the /etc/passwd and /etc/shadow files.
Additional Identifiers
Rule ID: SV-4268r2_rule
Vulnerability ID: V-4268
Group Title: GEN000000-LNX00320
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000225 |
Employ the principle of least privilege, allowing only authorized accesses for users (or processes acting on behalf of users) which are necessary to accomplish assigned organizational tasks. |
CCI-000764 |
Uniquely identify and authenticate organizational users and associate that unique identification with processes acting on behalf of those users. |