SV-281206r1166570_rule
V-281206
SRG-OS-000373-GPOS-00156
RHEL-10-600510
CAT II
10
Configure RHEL 10 to require users to supply a password for privilege escalation.
Remove any occurrences of " pam_succeed_if " in the "/etc/pam.d/sudo" file.
Verify RHEL 10 is not configured to bypass password requirements for privilege escalation with the following command:
$ sudo grep pam_succeed_if /etc/pam.d/sudo
If any occurrences of "pam_succeed_if" are returned, this is a finding.
V-281206
False
RHEL-10-600510
Verify RHEL 10 is not configured to bypass password requirements for privilege escalation with the following command:
$ sudo grep pam_succeed_if /etc/pam.d/sudo
If any occurrences of "pam_succeed_if" are returned, this is a finding.
M
5733