From c45916e030257ce66a0d3642e6b0fedd75453c9d Mon Sep 17 00:00:00 2001 From: Watson Sato Date: Mon, 21 Mar 2022 19:26:53 +0100 Subject: [PATCH] Exclude user nfsnobody who is equivalent to nobody Although we already exclude the user with username 'nobody', in some systems (at least RHEL7) the user 'nobody' has uid 99, and the user 'nfsnobody' has uid 65534. This patch excludes the user with name nfsnobody from the check on RHEL7 systems. --- .../oval/shared.xml | 9 +++++++++ .../accounts_users_home_files_ownership/oval/shared.xml | 9 +++++++++ .../oval/shared.xml | 9 +++++++++ 3 files changed, 27 insertions(+) diff --git a/linux_os/guide/system/accounts/accounts-session/accounts_users_home_files_groupownership/oval/shared.xml b/linux_os/guide/system/accounts/accounts-session/accounts_users_home_files_groupownership/oval/shared.xml index 1fd016a87e12..eb4774983738 100644 --- a/linux_os/guide/system/accounts/accounts-session/accounts_users_home_files_groupownership/oval/shared.xml +++ b/linux_os/guide/system/accounts/accounts-session/accounts_users_home_files_groupownership/oval/shared.xml @@ -10,12 +10,21 @@ nobody state_accounts_users_home_files_groupownership_interactive_gids +{{%- if product == 'rhel7' %}} + state_accounts_users_home_files_groupownership_nfsnobody +{{%- endif %}} {{{ gid_min }}} +{{%- if product == 'rhel7' %}} + + nfsnobody + +{{%- endif %}} + nobody state_accounts_users_home_files_ownership_interactive_uids +{{%- if product == 'rhel7' %}} + state_accounts_users_home_files_ownership_nfsnobody +{{%- endif %}} {{{ uid_min }}} +{{%- if product == 'rhel7' %}} + + nfsnobody + +{{%- endif %}} + nobody state_accounts_users_home_files_permissions_interactive_uids +{{%- if product == 'rhel7' %}} + state_accounts_users_home_files_permissions_nfsnobody +{{%- endif %}} {{{ uid_min }}} +{{%- if product == 'rhel7' %}} + + nfsnobody + +{{%- endif %}} +