AIX7-00-003101 - The AIX system must have no .netrc files on the system.

Information

Unencrypted passwords for remote FTP servers may be stored in .netrc files. Policy requires passwords be encrypted in storage and not used in access scripts.

Solution

Remove all '.netrc' file(s):
# find / -name .netrc -exec rm {} ;

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V2R9_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)(c), CAT|I, CCI|CCI-000196, Rule-ID|SV-215403r877397_rule, STIG-ID|AIX7-00-003101, STIG-Legacy|SV-101387, STIG-Legacy|V-91289, Vuln-ID|V-215403

Plugin: Unix

Control ID: 64c33de9872a0b3f9008de899fc7bc69656d63dc875fcf4251364f3030e83966