1.83 SOL-11.1-040120

Information

The system must not have accounts configured with blank or null passwords.

GROUP ID: V-216332
RULE ID: SV-216332r959010

Complex passwords can reduce the likelihood of success of automated password-guessing attacks.

Solution

The root role is required.

Remove, lock, or configure a password for any account with a blank password.

# passwd [username]

orUse the passwd -l command to lock accounts that are not permitted to execute commands.orUse the passwd -N command to set accounts to be non-login.

See Also

https://workbench.cisecurity.org/benchmarks/23765