1.19 - Remove, rename, or comment out the default user accounts from production servers - 'messaging-users.properties - guest'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Remove, rename, or comment out the default user accounts defined in .properties files and login-config.xml

Solution

Remove, rename, or comment out the default user accounts in the default <application-policy> elements located within the configuration file: JBOSS_HOME//server/@PROFILE@/conf/props/messaging-users.properties

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5, CAT|II

Plugin: Unix

Control ID: 4a0b11f7c8c8a2279d91e49d5dfa7bb4c9ab40f97006cb9caf0238d2ad41c02d