Skip to content

Unattended or automatic logon via the RHEL 8 graphical user interface must not be allowed.

An XCCDF Rule

Description

Failure to restrict system access to authenticated users negatively impacts operating system security.

ID
SV-230329r1017140_rule
Version
RHEL-08-010820
Severity
High
References
Updated

Remediation Templates

A Manual Procedure

Configure the operating system to not allow an unattended or automatic logon to the system via a graphical user interface.

Add or edit the line for the "AutomaticLoginEnable" parameter in the [daemon] section of the "/etc/gdm/custom.conf" file to "false":

[daemon]
AutomaticLoginEnable=false