SLEM-05-255025 - SLEM 5 must not allow unattended or automatic logon via SSH.

Information

Failure to restrict system access via SSH to authenticated users negatively impacts SLEM 5 security.

Solution

Configure SLEM 5 disables unattended or automatic logon via SSH.

Add or modify the following lines in the "/etc/ssh/sshd_config" file:

PermitEmptyPasswords no
PermitUserEnvironment no

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SLEM_5_V1R4_STIG.zip