STIGQter STIGQter: STIG Summary: IBM AIX 7.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 23 Apr 2021:

AIX must not have accounts configured with blank or null passwords.

DISA Rule

SV-215197r508663_rule

Vulnerability Number

V-215197

Group Title

SRG-OS-000480-GPOS-00229

Rule Version

AIX7-00-001038

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure a password for any interactive account with a blank password by running the following command:
# passwd [user_name]

Check Contents

Verify no interactive accounts have blank passwords by running the following command:
# pwdck -n ALL

If any interactive account with a blank password is found, this is a finding.

Vulnerability Number

V-215197

Documentable

False

Rule Version

AIX7-00-001038

Severity Override Guidance

Verify no interactive accounts have blank passwords by running the following command:
# pwdck -n ALL

If any interactive account with a blank password is found, this is a finding.

Check Content Reference

M

Target Key

4012

Comments