The system must require passwords to change the boot device settings. (SPARC)
An XCCDF Rule
Description
<VulnDiscussion>Setting the EEPROM password helps prevent attackers who gain physical access to the system console from booting from an external device (such as a CD-ROM or floppy).</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-216454r959010_rule
- Severity
- Low
- References
- Updated
Remediation - Manual Procedure
The root role is required.
This action applies to the global zone only. Determine the zone that you are currently securing.
# zonename