III - Administrative Sensitive
Rules and Groups employed by this XCCDF Profile
-
There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the AIX system.
Trust files are convenient, but when used in conjunction with the remote login services, they can allow unauthenticated access to a system.Rule Medium Severity -
SRG-OS-000480-GPOS-00229
Group -
The .rhosts file must not be supported in AIX PAM.
.rhosts files are used to specify a list of hosts permitted remote access to a particular account without authenticating. The use of such a mechanism defeats strong identification and authenticatio...Rule Medium Severity -
SRG-OS-000480-GPOS-00230
Group -
The AIX root user home directory must not be the root directory (/).
Changing the root home directory to something other than / and assigning it a 0700 protection makes it more difficult for intruders to manipulate the system by reading the files that root places in...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules