Level 1
Workstation
Server
System Maintenance
Local User and Group Settings
Automated
IG1
IG2
IG3
3.3 Configure Data Access Control Lists
T1078
T1078.001
T1078.003
TA0005
M1027
6.2.5 Ensure no duplicate UIDs exist
Audit
Run the following script and verify no results are returned:
#!/bin/bash
cut -f3 -d":" /etc/passwd | sort -n | uniq -c | while read x ; do
[ -z " $x " ] && break
set - $x
if [ $1 -gt 1 ] ; then
users = $( awk -F: '($3 == n) { print $1 }' n = $2 /etc/passwd | xargs)
echo "Duplicate UID ( $2 ): $users "
fi
done
Based on the results of the audit script, establish unique UIDs and review all files owned by the shared UIDs to determine which UID they are supposed to belong to.