STIGQter STIGQter: STIG Summary: VMware ESX 3 Server Version: 1 Release: 2 Benchmark Date: 22 Jul 2016: The SSH daemon must use privilege separation.

DISA Rule

SV-26782r1_rule

Vulnerability Number

V-22486

Group Title

GEN005537

Rule Version

GEN005537

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Edit the SSH daemon configuration and add or edit the UsePrivilegeSeparation setting value to yes.

Check Contents

Check the SSH daemon configuration for the UsePrivilegeSeparation setting.
# grep -i UsePrivilegeSeparation /etc/ssh/sshd_config | grep -v '^#'
If the setting is not present, or not set to yes, this is a finding.

Vulnerability Number

V-22486

Documentable

False

Rule Version

GEN005537

Severity Override Guidance

Check the SSH daemon configuration for the UsePrivilegeSeparation setting.
# grep -i UsePrivilegeSeparation /etc/ssh/sshd_config | grep -v '^#'
If the setting is not present, or not set to yes, this is a finding.

Check Content Reference

M

Responsibility

System Administrator

Target Key

1386

Comments