GEN002100 - The .rhosts file must not be supported in PAM.

Information

The .rhosts files are used to specify a list of hosts permitted remote access to a particular account without authenticating. The use of such a mechanism defeats strong identification and authentication requirements.

Solution

Edit /etc/pam.conf and remove the reference(s) to the rhosts_auth module.

See Also

https://iasecontent.disa.mil/stigs/zip/U_AIX_6-1_V1R14_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-11989, Rule-ID|SV-38845r1_rule, STIG-ID|GEN002100, Vuln-ID|V-11989

Plugin: Unix

Control ID: 2aaca624411474b5c581150e897a5754e0bb2ebcc56c6577b5f009162d95b8ae