SV-230238r646862_rule
V-230238
SRG-OS-000120-GPOS-00061
RHEL-08-010161
CAT II
10
Configure RHEL 8 to prevent system daemons from using Kerberos for authentication.
Remove any files with the .keytab extension from the operating system.
Verify that RHEL 8 prevents system daemons from using Kerberos for authentication.
If the system is a server utilizing krb5-server-1.17-18.el8.x86_64 or newer, this requirement is not applicable.
If the system is a workstation utilizing krb5-workstation-1.17-18.el8.x86_64 or newer, this requirement is not applicable.
Check if there are available keytabs with the following command:
$ sudo ls -al /etc/*.keytab
If this command produces any file(s), this is a finding.
V-230238
False
RHEL-08-010161
Verify that RHEL 8 prevents system daemons from using Kerberos for authentication.
If the system is a server utilizing krb5-server-1.17-18.el8.x86_64 or newer, this requirement is not applicable.
If the system is a workstation utilizing krb5-workstation-1.17-18.el8.x86_64 or newer, this requirement is not applicable.
Check if there are available keytabs with the following command:
$ sudo ls -al /etc/*.keytab
If this command produces any file(s), this is a finding.
M
2921