NixOS must not allow an unattended or automatic logon to the system via the console.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
highV-268172SRG-OS-000480-GPOS-00229ANIX-00-001880SV-268172r1131152_rule2025-08-191

Description

Failure to restrict system access via the console to authenticated users negatively impacts operating system security.

ℹ️ Check

Verify NixOS does not allow an unattended or automatic logon to the system via the console with the following command: $ grep -iR autologon.user /etc/nixos If "services.xserver.displayManager.autologon.user" is defined and is not "null", this is a finding.

✔️ Fix

Configure NixOS to not allow an unattended or automatic logon to the system via the console. Add the following Nix code to the NixOS Configuration, usually located in /etc/nixos/configuration.nix or /etc/nixos/flake.nix: services.xserver.displayManager.autologon.user = null; Rebuild and switch to the new NixOS configuration: $ sudo nixos-rebuild switch A reboot is required for the changes to take effect.