SV-282768r1201307_rule
V-282768
SRG-OS-000745-GPOS-00210
TOSS-05-000027
CAT II
10
Document all NIST-compliant external authenticators in use.
Sites must document external authenticators being used and that they are NIST compliant.
The following command will verify that Kerberos is functional and produce the list of signing hosts:
$ sudo klist -ekt /etc/krb5.keytab
If external authenticators are being use that are not documented and are not NIST compliant, this is a finding.
V-282768
False
TOSS-05-000027
Sites must document external authenticators being used and that they are NIST compliant.
The following command will verify that Kerberos is functional and produce the list of signing hosts:
$ sudo klist -ekt /etc/krb5.keytab
If external authenticators are being use that are not documented and are not NIST compliant, this is a finding.
M
5738