Rule version TOSS-05-000309 · STIG v1 · 2026-08-20
To ensure accountability and prevent unauthenticated access, groups must be identified uniquely to prevent potential misuse and compromise of the system.
Verify TOSS 5 contains no duplicate GIDs for interactive users using the following command:
$ cut -d : -f 3 /etc/group | uniq -d
If the system has duplicate GIDs, this is a finding.
Edit the file "/etc/group" and provide each group that has a duplicate GID with a unique GID.