STIGUI
V-282759CAT I — High severitySV-282759r1201257_rule

TOSS 5 must not allow unattended or automatic logon via the graphical user interface.

Rule version TOSS-05-000268 · STIG v1 · 2026-08-20

Discussion

Failure to restrict system access to authenticated users negatively impacts operating system security.

Check

Verify TOSS 5 does not allow an unattended or automatic logon to the system via a graphical user interface.

Note: This requirement assumes the use of the TOSS 5 default graphical user interface, the GNOME desktop environment. If the system does not have any graphical user interface installed, this requirement is not applicable.

Check for the value of the "AutomaticLoginEnable" in the "/etc/gdm/custom.conf" file using the following command:

$ grep -i automaticlogin /etc/gdm/custom.conf

[daemon] AutomaticLoginEnable=false

If the value of "AutomaticLoginEnable" is not set to "false", this is a finding.

Fix

Configure the GNOME desktop display manager to disable automatic login.

Set "AutomaticLoginEnable" to "false" in the [daemon] section in "/etc/gdm/custom.conf". For example:

[daemon] AutomaticLoginEnable=false

Identifiers

Group ID
V-282759
Group title
SRG-OS-000480-GPOS-00229
Rule ID
SV-282759r1201257_rule
Check ID
C-87320r1201255_chk
Fix ID
F-87225r1201256_fix