Back

Create a warning message for graphical logons.


CONTROL ID
01598
CONTROL TYPE
Configuration
CLASSIFICATION
Preventive

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Apply the appropriate warning message to systems., CC ID: 01596

There are no implementation support Controls.


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security AIX Benchmark, 1.0.1)
  • Title: Set GNOME Warning Banner Description: The GNOME Display Manager is used for login session management. See the manual page gdm(1) for more information. The remediation action for this item sets a warning message for GDM users before they log in. Rationale: Warning messages inform users who… (Rule: xccdf_org.cisecurity.benchmarks_rule_8.3_Set_GNOME_Warning_Banner Artifact Expression: xccdf_org.cisecurity.benchmarks_ae_8.3.1_, The Center for Internet Security CentOS 6 Level 1 Benchmark, 1.0.0)
  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security HP-UX Benchmark, 1.4.2)
  • Title: Set GNOME Warning Banner Description: The GNOME Display Manager is used for login session management. See the manual page gdm(1) for more information. The remediation action for this item sets a warning message for GDM users before they log in. Rationale: Warning messages inform users w… (Rule:xccdf_org.cisecurity.benchmarks_rule_8.3_Set_GNOME_Warning_Banner Artifact Expression:xccdf_org.cisecurity.benchmarks_ae_8.3.1_, The Center for Internet Security Red Hat Enterprise Linux 6 Level 1 Benchmark, 1.2.0)
  • Title: Set GNOME Warning Banner Description: The GNOME Display Manager is used for login session management. See the manual page gdm(1) for more information. The remediation action for this item sets a warning message for GDM users before they log in. Rationale: Warning messages inform users w… (Rule:xccdf_org.cisecurity.benchmarks_rule_8.3_Set_GNOME_Warning_Banner Artifact Expression:xccdf_org.cisecurity.benchmarks_ae_8.3.1_, The Center for Internet Security Red Hat Enterprise Linux 6 Level 2 Benchmark, 1.2.0)
  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security Red Hat Enterprise Linux Benchmark, 1.0.5)
  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security Red Hat Enterprise Linux Benchmark, 1.1.1)
  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security Slackware Linux Benchmark, 1.1)
  • Create warnings for GUI-based logins. (§ 8.2, The Center for Internet Security Solaris 10 Benchmark, 2.1.2)
  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security Solaris Benchmark, 1.5.0)
  • Create warnings for GUI-based logins. (§ 9.2, The Center for Internet Security SuSE Linux Enterprise Server Benchmark, 2)
  • Table F-6: For Solaris, the organization must create a warning banner for GUI-based logins. Table F-7: For HP-UX, the organization must create a warning banner for GUI-based logins. Table F-8: For RedHat Linux, the organization must create a warning banner for GUI-based logins. (Table F-6, Table F-7, Table F-8, CMS Business Partners Systems Security Manual, Rev. 10)
  • The graphical login banner should be set appropriately. Technical Mechanisms: Parameters: banner text or null References: 10.8.10.5.2 (5) e) (CCE-5842-0, Common Configuration Enumeration List, Combined XML: AIX 5.3, 5.20130214)
  • The graphical login banner should be set appropriately. Technical Mechanisms: via Xwindows Parameters: banner text or null References: 10.8.10.5.2 (5) e) (CCE-5255-5, Common Configuration Enumeration List, Combined XML: HP-UX 11.23, 5.20130214)
  • The graphical login banner should be set appropriately. Technical Mechanisms: via Xwindows Parameters: banner text or null References: 10.8.10.5.2 (5) e) (CCE-6286-9, Common Configuration Enumeration List, Combined XML: Red Hat Enterprise Linux 4, 5.20130214)
  • The direct gnome login warning banner should be set correctly. Technical Mechanisms: via RHEL.xml Parameters: banner text/xml References: Section: 2.3.7.2, Value: (CCE-4188-9, Common Configuration Enumeration List, Combined XML: Red Hat Enterprise Linux 5, 5.20130214)
  • Warning banners for gui login users should be enabled or disabled as appropriate Technical Mechanisms: via /etc/gdm/custom.conf Parameters: enabled / disabled References: Section: 3.6.2.1, Value: enabled (CCE-3717-6, Common Configuration Enumeration List, Combined XML: Red Hat Enterprise Linux 5, 5.20130214)
  • CDE should display a banner as appropriate before authentication. Technical Mechanisms: /usr/dt/config/*/Xresources Parameters: banner text References: Section: 8.2,Value: (CCE-4698-7, Common Configuration Enumeration List, Combined XML: Sun Solaris 10, 5.20130214)
  • GNOME should display a banner as appropriate before authentication. Technical Mechanisms: /etc/X11/gdm/gdm.conf Parameters: banner text References: Section: 8.3,Value: (CCE-4222-6, Common Configuration Enumeration List, Combined XML: Sun Solaris 10, 5.20130214)
  • The graphical login banner should be set appropriately. Technical Mechanisms: via Xwindows Parameters: banner text or null References: 10.8.10.5.2 (5) e) (CCE-5792-7, Common Configuration Enumeration List, Combined XML: Sun Solaris 8, 5.20130214)
  • The graphical login banner should be set appropriately. Technical Mechanisms: via Xwindows Parameters: banner text or null References: 10.8.10.5.2 (5) e) (CCE-6683-7, Common Configuration Enumeration List, Combined XML: Sun Solaris 9, 5.20130214)
  • Create warnings for GUI-based logins. The standard graphical login program for Solaris requires the the username to be entered in one dialog box and the corresponding password to be entered in a second, separate dialog. The commands above set the warning message on both to be the same message. (§ 9.2, NSA Guide to the Secure Configuration of Solaris 9, Version 1.0)