On 4/26/12 8:06 PM, Willy Santos wrote:
CCI-000206 requires obscure feedback of authentication information durint the 
authentication process (i.e. using asterisks when passwords are being typed) 
which is default behavior for RHEL authentication mechanisms.

Signed-off-by: Willy Santos<[email protected]>
---
  rhel6/src/input/system/accounts/accounts.xml |    1 +
  1 files changed, 1 insertions(+), 0 deletions(-)

diff --git a/rhel6/src/input/system/accounts/accounts.xml 
b/rhel6/src/input/system/accounts/accounts.xml
index fbdeb39..84bdc99 100644
--- a/rhel6/src/input/system/accounts/accounts.xml
+++ b/rhel6/src/input/system/accounts/accounts.xml
@@ -9,3 +9,4 @@ necessary part of securing a system. This section introduces
  mechanisms for restricting access to accounts under
  RHEL6.</description>
  </Group>
+<ident cci="CCI-000206" />

I think it was Jeff who mentioned we may create something that says "these are all met by the OS by default," so this may end up moving. But this does seem the best place for this for now. Ack.

--
Shawn Wells
Technical Director,
U.S. Intelligence Programs
(e) [email protected]
(c) 443.534.0130

_______________________________________________
scap-security-guide mailing list
[email protected]
https://fedorahosted.org/mailman/listinfo/scap-security-guide

Reply via email to