Skip to content
ATO Pathways
Log In
Overview
Search
Catalogs
SCAP
OSCAL
Catalogs
Profiles
Documents
References
Knowledge Base
Platform Documentation
Compliance Dictionary
Platform Changelog
About
Catalogs
XCCDF
Guide to the Secure Configuration of Red Hat Enterprise Linux 9
System Settings
Account and Access Control
Protect Accounts by Configuring PAM
Set Lockouts for Failed Password Attempts
An SELinux Context must be configured for the pam_faillock.so records directory
An SELinux Context must be configured for the pam_faillock.so records directory
An XCCDF Rule
Details
Profiles
Prose
An SELinux Context must be configured for the pam_faillock.so records directory
Medium Severity
The
dir
configuration option in PAM pam_faillock.so module defines where the lockout records is stored. The configured directory must have the correct SELinux context.