GEN000410 - The FTPS/FTP service on the system must be configured with the Department of Defense (DoD) login banner - banner content

Information

Failure to display the logon banner prior to a logon attempt will negate legal proceedings resulting from unauthorized access to system resources.

NOTE: SFTP and FTPS are encrypted alternatives to FTP that should be used in place of FTP. SFTP is implemented by the SSH service and uses its banner configuration.

Solution

Edit /etc/ftpd/ftpaccess and add or edit the BANNER parameter ('banner /etc/ftpd/banner.msg').
# vi /etc/ftpd/ftpaccess

Add one of the DoD Login Banners (based on the character limitations imposed by the system) to the /etc/ftpd/banner.msg file.
# vi /et

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_x86_V2R4_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-8a., CAT|II, CCI|CCI-000048, Rule-ID|SV-227576r603266_rule, STIG-ID|GEN000410, STIG-Legacy|SV-39879, STIG-Legacy|V-23732, Vuln-ID|V-227576

Plugin: Unix

Control ID: e2d424d1b56fdbb86e100c0eba3ab31f1006a5bb677068b10a107b122ee2ac1a