Skip to content
ATO Pathways
Log In
Overview
Search
Catalogs
SCAP
OSCAL
Catalogs
Profiles
Documents
References
Knowledge Base
Platform Documentation
Compliance Dictionary
Platform Changelog
About
Catalogs
XCCDF
Guide to the Secure Configuration of OpenEmbedded
System Settings
Account and Access Control
Protect Accounts by Restricting Password-Based Login
Verify Proper Storage and Existence of Password Hashes
Verify No netrc Files Exist
Verify No netrc Files Exist
An XCCDF Rule
Details
Profiles
Prose
Verify No netrc Files Exist
Medium Severity
The
.netrc
files contain login information used to auto-login into FTP servers and reside in the user's home directory. These files may contain unencrypted passwords to remote FTP servers making them susceptible to access by unauthorized users and should not be used. Any
.netrc
files should be removed.