File: group.yml

package info (click to toggle)
scap-security-guide 0.1.76-1
  • links: PTS, VCS
  • area: main
  • in suites: trixie
  • size: 110,644 kB
  • sloc: xml: 241,883; sh: 73,777; python: 32,527; makefile: 27
file content (14 lines) | stat: -rw-r--r-- 681 bytes parent folder | download | duplicates (9)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
documentation_complete: true

title: 'Protect Accounts by Restricting Password-Based Login'

description: |-
    Conventionally, Unix shell accounts are accessed by
    providing a username and password to a login program, which tests
    these values for correctness using the <tt>/etc/passwd</tt> and
    <tt>/etc/shadow</tt> files. Password-based login is vulnerable to
    guessing of weak passwords, and to sniffing and man-in-the-middle
    attacks against passwords entered over a network or at an insecure
    console. Therefore, mechanisms for accessing accounts by entering
    usernames and passwords should be restricted to those which are
    operationally necessary.