Rule ID
SV-256906r902288_rule
STIG
Red Hat Ansible Automation Controller Application Server Security Technical Implementation GuideVersion
V1R2
CCIs
Default superuser accounts, such as "root", are considered group authenticators. In the case of Automation Controller this is the "admin" account.
Log in to the Automation Controller web console as an administrator and navigate to Access >> Users. The only local user allowed is the default/breakglass "admin". All other users need to come from an external authentication source. If any other local users exist, this is a finding.
Log in to the Automation Controller web console as an administrator and navigate to Access >> Users. Click the Username to be removed. Select "Delete" and confirm.