<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic security audit requirements for default users in Operating System - Linux</title>
    <link>https://community.hpe.com/t5/operating-system-linux/security-audit-requirements-for-default-users/m-p/4802805#M44550</link>
    <description>&lt;P&gt;Dear Gurus,&lt;/P&gt;&lt;P&gt;I have Redhat AS 4 running on rx6600 machines. During the audit following questions were raised, would be delighted if someone could help me in answering those:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#244061" face="Cambria, serif"&gt;&lt;SPAN class="Apple-style-span"&gt;&lt;STRONG&gt;Question # 1:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;We observed that the Following Users are not attached to access control groups as appropriate:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;1.&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG&gt;&lt;SPAN&gt;tty,mem,kmem,man,games,gopher,dip,ftttp,lock,nobody,dbus,flopy,vcsa,nscd,rpm,haldaemon,utmp,slocate,sshd,rpc,rpcuser,nfsnobody,mailnull,smmsp,pcap,xfs,ntp.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;And Also the Following generic users accounts are member of powerful user groups:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;STRONG&gt;&lt;STRONG&gt;2.b&lt;/STRONG&gt;&lt;STRONG&gt;in,daemon,adm,lp,sync,shutdown,halt,mail,news,uucp,operator,games,gopher,ftp,vcsa,nscd,rpm,haldaemon,netdump,sshd,rpc,rpcuser,nfsnobody,mailnull,gdm&lt;/STRONG&gt;﻿&lt;/STRONG&gt;﻿&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;STRONG&gt;&lt;SPAN&gt;Question # 2:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN class="Apple-style-span"&gt;As per the existing servers configuration of Hp Linux Operating systems Default Accounts,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;We observed that the Following Default Accounts On HP Linux are active and not disabled: &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;STRONG&gt;1.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;STRONG&gt;uucp, bin, nobody, daemon, lp&lt;/STRONG&gt;﻿﻿&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;I will appreciate your advice to solve this issue, also the effects of disabling these accounts / services and what are the generally best practices to achive this.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 27 Jun 2011 06:51:34 GMT</pubDate>
    <dc:creator>AQadir_1</dc:creator>
    <dc:date>2011-06-27T06:51:34Z</dc:date>
    <item>
      <title>security audit requirements for default users</title>
      <link>https://community.hpe.com/t5/operating-system-linux/security-audit-requirements-for-default-users/m-p/4802805#M44550</link>
      <description>&lt;P&gt;Dear Gurus,&lt;/P&gt;&lt;P&gt;I have Redhat AS 4 running on rx6600 machines. During the audit following questions were raised, would be delighted if someone could help me in answering those:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#244061" face="Cambria, serif"&gt;&lt;SPAN class="Apple-style-span"&gt;&lt;STRONG&gt;Question # 1:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;We observed that the Following Users are not attached to access control groups as appropriate:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;SPAN&gt;1.&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG&gt;&lt;SPAN&gt;tty,mem,kmem,man,games,gopher,dip,ftttp,lock,nobody,dbus,flopy,vcsa,nscd,rpm,haldaemon,utmp,slocate,sshd,rpc,rpcuser,nfsnobody,mailnull,smmsp,pcap,xfs,ntp.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;And Also the Following generic users accounts are member of powerful user groups:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;STRONG&gt;&lt;STRONG&gt;2.b&lt;/STRONG&gt;&lt;STRONG&gt;in,daemon,adm,lp,sync,shutdown,halt,mail,news,uucp,operator,games,gopher,ftp,vcsa,nscd,rpm,haldaemon,netdump,sshd,rpc,rpcuser,nfsnobody,mailnull,gdm&lt;/STRONG&gt;﻿&lt;/STRONG&gt;﻿&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;STRONG&gt;&lt;SPAN&gt;Question # 2:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN class="Apple-style-span"&gt;As per the existing servers configuration of Hp Linux Operating systems Default Accounts,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;We observed that the Following Default Accounts On HP Linux are active and not disabled: &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;STRONG&gt;1.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;STRONG&gt;uucp, bin, nobody, daemon, lp&lt;/STRONG&gt;﻿﻿&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN&gt;I will appreciate your advice to solve this issue, also the effects of disabling these accounts / services and what are the generally best practices to achive this.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2011 06:51:34 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/security-audit-requirements-for-default-users/m-p/4802805#M44550</guid>
      <dc:creator>AQadir_1</dc:creator>
      <dc:date>2011-06-27T06:51:34Z</dc:date>
    </item>
  </channel>
</rss>

