Skip to content

Verify No netrc Files Exist

An XCCDF Rule

Description

The .netrc files contain login information used to auto-login into FTP servers and reside in the user's home directory. These files may contain unencrypted passwords to remote FTP servers making them susceptible to access by unauthorized users and should not be used. Any .netrc files should be removed.

Rationale

Unencrypted passwords for remote FTP servers may be stored in .netrc files.

ID
xccdf_org.ssgproject.content_rule_no_netrc_files
Severity
Medium
References
Updated