Ensure root account access is controlled

Cette page n'est pas encore disponible en français, sa traduction est en cours.
Si vous avez des questions ou des retours sur notre projet de traduction actuel, n'hésitez pas à nous contacter.

Description

There are a number of methods to access the root account directly. Without a password set any user would be able to gain access and thus control over the entire system.

Rationale

Access to root should be secured at all times.

Warning

This rule doesn’t come with a remediation, as the exact requirement allows root to either have a password or be locked.