SV-230271r627750_rule
V-230271
SRG-OS-000373-GPOS-00156
RHEL-08-010380
CAT II
10
Remove any occurrence of "NOPASSWD" found in "/etc/sudoers" file or files in the "/etc/sudoers.d" directory.
Verify that "/etc/sudoers" has no occurrences of "NOPASSWD".
Check that the "/etc/sudoers" file has no occurrences of "NOPASSWD" by running the following command:
$ sudo grep -i nopasswd /etc/sudoers /etc/sudoers.d/*
%admin ALL=(ALL) NOPASSWD: ALL
If any occurrences of "NOPASSWD" are returned from the command and have not been documented with the ISSO as an organizationally defined administrative group utilizing MFA, this is a finding.
V-230271
False
RHEL-08-010380
Verify that "/etc/sudoers" has no occurrences of "NOPASSWD".
Check that the "/etc/sudoers" file has no occurrences of "NOPASSWD" by running the following command:
$ sudo grep -i nopasswd /etc/sudoers /etc/sudoers.d/*
%admin ALL=(ALL) NOPASSWD: ALL
If any occurrences of "NOPASSWD" are returned from the command and have not been documented with the ISSO as an organizationally defined administrative group utilizing MFA, this is a finding.
M
2921