- NSA 2.3.1.2 & 2.3.1.3, possibly via sudo module
- NSA 2.3.1.4 Block Shell and Login Access for Non-Root System Accounts
- NSA 2.3.1.5.1 Verify that No Accounts Have Empty Password Fields
- NSA 2.3.1.5.2 Verify that All Account Password Hashes are Shadowed
- NSA 2.3.1.6 Verify that No Non-Root Accounts Have UID 0
- NSA 2.3.1.7.1 Remove Password Parameters from libuser.conf
- NSA 2.3.1.8 Remove Legacy ’+’ Entries from Password Files
- NSA 2.3.2.2 Create and Maintain a Group Containing All Human Users
- check login.defs status with current releases of Ubuntu