AIX must provide the lock command to let users retain their session lock until users are reauthenticated.
An XCCDF Rule
Description
All systems are vulnerable if terminals are left logged in and unattended. Leaving system terminals unsecure poses a potential security hazard. To lock the terminal, use the lock command.
- ID
- SV-215187r958400_rule
- Version
- AIX7-00-001028
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Install "bos.rte.security" fileset from the AIX DVD Volume 1 using the following command (assuming that the DVD device is mounted to /dev/cd0):
# installp -aXYgd /dev/cd0 -e /tmp/install.log bos.rte.security