GEN000000-LNX00320 - The system must not have special privilege accounts, such as shutdown and halt - /etc/passwd reboot'

Details

If special privilege accounts are compromised, the accounts could provide privileges to execute malicious commands on a system.


Solution

Remove any special privilege accounts, such as shutdown and halt, from the /etc/passwd and /etc/shadow files using the 'userdel' or 'system-config-users' commands.


Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Access Control, Identification and Authentication.This control applies to the following type of system Unix.


References


Source