3.7.3 Miscellaneous Enhancements - /etc/ftpusers

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This change adds the root user to the /etc/ftpusers file, which disables ftp for root.

This change ensures that direct root ftp access is disabled. As detailed previously, ftp as a service should be disabled. If the service has to be enabled then this change must be implemented to ensure that remote root file transfer access is not enabled.

Solution

Add root to the /etc/ftpusers file-

echo 'root' >> /etc/ftpusers

See Also

https://workbench.cisecurity.org/files/528