RHEL-10-700720 - RHEL 10 must not allow unattended or automatic login via the graphical user interface.

Information

Failure to restrict system access to authenticated users negatively impacts operating system security.

Solution

Configure RHEL 10 so that the GNOME desktop display manager disables automatic login.

Update the "/etc/gdm/custom.conf" file to disable automatic login to the GNOME desktop:

$ sudo vi /etc/gdm/custom.conf

[daemon]
AutomaticLoginEnable=false

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_10_V1R1_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|I, CCI|CCI-000213, Rule-ID|SV-281275r1166777_rule, STIG-ID|RHEL-10-700720, Vuln-ID|V-281275

Plugin: Unix

Control ID: 5491f506c6cbb51fce7286bc34027ab9db49eb24ba03f451c3458f2e09d38dd5