/etc/security/user – ‘mindiff >= 4’ Details Checks the minimum number of characters that are required in a new password which were not in the old...
/etc/security/user – ‘minlen = 8’ Details Checks the minimum length of a password. Supportive Information The following resource is also helpful. https://workbench.cisecurity.org/files/525 This security hardening...
/etc/security/user – ‘minother >= 2’ Details Checks the minimum number of non-alphabetic characters in a password. Supportive Information The following resource is also helpful. https://workbench.cisecurity.org/files/525...
/etc/security/user – ‘rlogin = false’ Details Checks whether or not the root user can login remotely. Supportive Information The following resource is also helpful. https://workbench.cisecurity.org/files/525...
/etc/security/user – ‘maxage <= 13' but not 0 Details Checks the maximum number of weeks that a password is valid. Supportive Information The following resource is also helpful....
/etc/security/user – ‘maxexpired <= 2' Details Checks the number of weeks after expiration that a user can change their password. Supportive Information The following resource...
/etc/security/user – ‘maxrepeats <= 2' Details Checks the maximum number of repeated characters in a password. Supportive Information The following resource is also helpful. https://workbench.cisecurity.org/files/525...
/etc/security/user – ‘sugroups=ALL su=true’ Details Checks whether root, via su, is restricted to a specific group. Supportive Information The following resource is also helpful....
Miscellaneous Enhancements – crontab permissions – ‘/usr/lib/ras/dumpcheck 755’ Details Checking that /usr/lib/ras/dumpcheck exists and is mode 750 Supportive Information The following resource is also helpful. https://workbench.cisecurity.org/files/525 This control...
Miscellaneous Enhancements – crontab permissions – ‘/usr/lib/spell/compress 755’ Details Checking that /usr/lib/spell/compress exists and is mode 755 Supportive Information The following resource is also helpful. https://workbench.cisecurity.org/files/525 This control...