Automation Controller must be configured to authenticate users individually, prior to using a group authenticator.
An XCCDF Rule
Description
<VulnDiscussion>Default superuser accounts, such as "root", are considered group authenticators. In the case of Automation Controller this is the "admin" account.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-256906r902288_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
Log in to the Automation Controller web console as an administrator and navigate to Access >> Users.
Click the Username to be removed.
Select "Delete" and confirm.