![]() ![]() RHEL 8 must not allow blank or null passwords in the password-auth file. Accounts with empty passwords should never be used in operational environments. If an account has an empty password, anyone could log on and run commands with the privileges of that account. ![]() RHEL 8 must not allow blank or null passwords in the system-auth file. RHEL 8 operating systems booted with United Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user mode and maintenance. If the system does not require valid authentication before it boots into single-user or maintenance mode, anyone who invokes single-user or maintenance mode is granted privileged access to all. RHEL 8 operating systems booted with a BIOS must require authentication upon booting into single-user and maintenance modes. ![]() ![]() Findings (MAC III - Administrative Sensitive) Finding ID ![]()
0 Comments
Leave a Reply. |