5.2.14 Ensure SSH access is limited

Information

Restricting which users can remotely access the system via SSH will help ensure that only authorized users access the system.

Solution

Edit the /etc/ssh/sshd_config file to set one or more of the parameter as follows:
AllowUsers <userlist>
AllowGroups <grouplist>
DenyUsers <userlist>
DenyGroups <grouplist>

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(7)(b), CSCv6|5.1, CSCv6|5.8

Plugin: Unix

Control ID: d82f924e077262398f66da41de140039f0688c6c299b9fc82461a163df5352d4