GEN002120-ESXI5-000045 - The /etc/shells (or equivalent) file must exist - or equivalent file must exist

Information

The shells file (or equivalent) lists approved default shells. It helps provide layered defense to the security approach by ensuring users cannot change their default shell to an unauthorized shell that may not be secure.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Disable lock down mode.
Enable the ESXi Shell.
<file> = /etc/shells
Execute the following command(s):
# > /etc/shells

Re-enable lock down mode.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_ESXi5_Server_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-39275, Rule-ID|SV-250579r798736_rule, STIG-ID|GEN002120-ESXI5-000045, STIG-Legacy|SV-51091, STIG-Legacy|V-39275, Vuln-ID|V-250579

Plugin: VMware

Control ID: 969f2493055b8099fc451e76ef9856bcf2fffbf2c8b1afabc0db75aeec723a25