4.2.5 Configuring SSH - banner configuration - ssh_banner

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The recommendation is to edit the /etc/ssh/sshd_config file and configure a path to a login herald message.

The login herald configured previously is not displayed during the initiation of a new SSH connection. Prior to a password being entered the user should accept the terms and conditions of the corporate acceptable usage policy.

Solution

Create an SSH banner file-

printf 'Unauthorized use of this system is prohibited.
' > /etc/ssh/ssh_banner

NOTE- The content of the banner file can reflect any internal acceptable usage policy standards

See Also

https://workbench.cisecurity.org/files/528