V-38613: The system must not permit root logins using remote access programs such as ssh. ----------------------------------------------------------------------------------------- Permitting direct root login reduces auditable information about who ran privileged commands on the system and also allows direct attack attempts on root's password. Details: `V-38613 in STIG Viewer`_. .. _V-38613 in STIG Viewer: https://www.stigviewer.com/stig/red_hat_enterprise_linux_6/2015-05-26/finding/V-38613 Notes for deployers ~~~~~~~~~~~~~~~~~~~ .. include:: developer-notes/V-38613.rst