SV-213518r615939_rule
V-213518
SRG-APP-000141-AS-000095
JBOS-AS-000220
CAT I
10
Use the relevant OS commands to restrict JBoss user account from interactively logging on to the console of the JBoss system.
For Windows systems, use GPO.
For UNIX like systems using ssh DenyUsers <account id> or follow established procedure for restricting access.
Identify the user account used to run the JBoss server. Use relevant OS commands to determine logon rights to the system. This account should not have full shell/interactive access to the system.
If the user account used to operate JBoss can log on interactively, this is a finding.
V-213518
False
JBOS-AS-000220
Identify the user account used to run the JBoss server. Use relevant OS commands to determine logon rights to the system. This account should not have full shell/interactive access to the system.
If the user account used to operate JBoss can log on interactively, this is a finding.
M
3987