Bug 2228434
| Summary: | Definition of interactive an non interactive users [rhel-8.6.0.z] | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 8 | Reporter: | RHEL Program Management Team <pgm-rhel-tools> |
| Component: | scap-security-guide | Assignee: | Marcus Burghardt <maburgha> |
| Status: | CLOSED ERRATA | QA Contact: | Milan Lysonek <mlysonek> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 8.6 | CC: | ggasparb, jcerny, maburgha, matyc, mhaicman, mlysonek, vpolasek, wsato |
| Target Milestone: | rc | Keywords: | Triaged, ZStream |
| Target Release: | --- | Flags: | pm-rhel:
mirror+
|
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | scap-security-guide-0.1.69-2.el8_6 | Doc Type: | Enhancement |
| Doc Text: |
.Better definition of interactive users
The rules in the `scap-security-guide` package now provide a consistent experience regarding interactive users configuration. Previously, various rules used different approaches for identifying interactive and non-interactive users. Starting from this release, we have unified the definitions of interactive users. Users accounts with the UID greater than or equal 1000 are now considered interactive, with the exception of `nobody` and `nfsnobody` user accounts and with the exception of user accounts that use `/sbin/nologin` as the login shell.
This change affects the following rules:
- accounts_umask_interactive_users
- accounts_user_dot_user_ownership
- accounts_user_dot_group_ownership
- accounts_user_dot_no_world_writable_programs
- accounts_user_interactive_home_directory_defined
- accounts_user_interactive_home_directory_exists
- accounts_users_home_files_groupownership
- accounts_users_home_files_ownership
- accounts_users_home_files_permissions
- file_groupownership_home_directories
- file_ownership_home_directories
- file_permissions_home_directories
- file_permissions_home_dirs
- no_forward_files
|
Story Points: | --- |
| Clone Of: | 2157877 | Environment: | |
| Last Closed: | 2023-08-29 09:11:56 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2157877 | ||
| Bug Blocks: | |||
|
Comment 14
errata-xmlrpc
2023-08-29 09:11:56 UTC
|