Unattended or automatic logon via the RHEL 8 graphical user interface must not be allowed.
An XCCDF Rule
Description
Failure to restrict system access to authenticated users negatively impacts operating system security.
- ID
- SV-230329r1017140_rule
- Version
- RHEL-08-010820
- Severity
- High
- References
- Updated
Remediation Templates
A Manual Procedure
Configure the operating system to not allow an unattended or automatic logon to the system via a graphical user interface.
Add or edit the line for the "AutomaticLoginEnable" parameter in the [daemon] section of the "/etc/gdm/custom.conf" file to "false":
[daemon]
AutomaticLoginEnable=false