<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://secscan.acron.pl/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://secscan.acron.pl/feed.php">
        <title>SecScan centos7:5:3</title>
        <description></description>
        <link>https://secscan.acron.pl/</link>
        <image rdf:resource="https://secscan.acron.pl/lib/tpl/bootstrap3/images/favicon.ico" />
       <dc:date>2026-04-17T02:55:23+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/5/3/1?rev=1493919014&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/5/3/2?rev=1493919232&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/5/3/3?rev=1494002630&amp;do=diff"/>
                <rdf:li rdf:resource="https://secscan.acron.pl/centos7/5/3/4?rev=1493919564&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://secscan.acron.pl/lib/tpl/bootstrap3/images/favicon.ico">
        <title>SecScan</title>
        <link>https://secscan.acron.pl/</link>
        <url>https://secscan.acron.pl/lib/tpl/bootstrap3/images/favicon.ico</url>
    </image>
    <item rdf:about="https://secscan.acron.pl/centos7/5/3/1?rev=1493919014&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T19:30:14+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>5.3.1 Ensure password creation requirements are configured (Scored)</title>
        <link>https://secscan.acron.pl/centos7/5/3/1?rev=1493919014&amp;do=diff</link>
        <description>5.3.1 Ensure password creation requirements are configured (Scored)

Profile Applicability

Description

The pam_pwquality.so module checks the strength of passwords. It performs checks such as making sure a password is not a dictionary word, it is a certain length, contains a mix of characters (e.g. alphabet, numeric, other) and more. The following are definitions of the</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/5/3/2?rev=1493919232&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T19:33:52+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>5.3.2 Ensure lockout for failed password attempts is configured (Not Scored)</title>
        <link>https://secscan.acron.pl/centos7/5/3/2?rev=1493919232&amp;do=diff</link>
        <description>5.3.2 Ensure lockout for failed password attempts is configured (Not Scored)

Profile Applicability

Description

Lock out users after n unsuccessful consecutive login attempts. The first sets of changes are made to the PAM configuration files. The second set of changes are applied to the program specific PAM configuration file. The second set of changes must be applied to each program that will lock out users. Check the documentation for each secondary program for instructions on how to configu…</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/5/3/3?rev=1494002630&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-05T18:43:50+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>5.3.3 Ensure password reuse is limited (Scored)</title>
        <link>https://secscan.acron.pl/centos7/5/3/3?rev=1494002630&amp;do=diff</link>
        <description>5.3.3 Ensure password reuse is limited (Scored)

Profile Applicability

Description

The /etc/security/opasswd file stores the users' old passwords and can be checked to ensure that users are not recycling recent passwords.

Rationale

Forcing users not to reuse their past 5 passwords make it less likely that an attacker will be able to guess the password.</description>
    </item>
    <item rdf:about="https://secscan.acron.pl/centos7/5/3/4?rev=1493919564&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2017-05-04T19:39:24+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>5.3.4 Ensure password hashing algorithm is SHA-512 (Scored)</title>
        <link>https://secscan.acron.pl/centos7/5/3/4?rev=1493919564&amp;do=diff</link>
        <description>5.3.4 Ensure password hashing algorithm is SHA-512 (Scored)

Profile Applicability

Description

The commands below change password encryption from md5 to sha512 (a much stronger hashing algorithm). All existing accounts will need to perform a password change to upgrade the stored hashes to the new algorithm.</description>
    </item>
</rdf:RDF>
