SV-99233r1_rule
V-88583
SRG-OS-000120-GPOS-00061
VROM-SL-000710
CAT II
10
Edit the "/etc/default/passwd" file and add or change the "CRYPT" variable setting so that it contains:
CRYPT=sha256
OR
CRYPT=sha512
Edit the "/etc/default/passwd" file and add or change the "CRYPT_FILES" variable setting so that it contains:
CRYPT_FILES=sha256
OR
CRYPT_FILES=sha512
Check the "/etc/default/passwd" file:
# grep CRYPT /etc/default/passwd
If the "CRYPT" setting in the "/etc/default/passwd" file is not present, or not set to "SHA256" or "SHA512", this is a finding.
If the "CRYPT_FILES" setting in the "/etc/default/passwd" file is not present, or not set to "SHA256" or "SHA512", this is a finding.
V-88583
False
VROM-SL-000710
Check the "/etc/default/passwd" file:
# grep CRYPT /etc/default/passwd
If the "CRYPT" setting in the "/etc/default/passwd" file is not present, or not set to "SHA256" or "SHA512", this is a finding.
If the "CRYPT_FILES" setting in the "/etc/default/passwd" file is not present, or not set to "SHA256" or "SHA512", this is a finding.
M
3461