# CIS Ubuntu 14.04 LTS - 6.2.2 Ensure no legacy + entries exist in /etc/passwd

> Verify no legacy NIS '+' entries exist in /etc/passwd

- Skill: `cyberstrikeus/cis-ubuntu-14-04-lts-6-2-2-ensure-no-legacy-entries-exist-in` (Agent Skill)
- Install (CLI): `npx skillmds@latest add cyberstrikeus/cis-ubuntu-14-04-lts-6-2-2-ensure-no-legacy-entries-exist-in`
- Raw SKILL.md: https://api.skillmd.com/api/skills/cyberstrikeus/cis-ubuntu-14-04-lts-6-2-2-ensure-no-legacy-entries-exist-in/raw
- Safety review: PASS (external: skill-scanner PASS, skillspector CAUTION)
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: Coding & Dev Tools
- Author: cyberstrikeus (https://skillmd.com/u/cyberstrikeus)
- Updated: 2026-09-17
- Page: https://skillmd.com/skills/cyberstrikeus/cis-ubuntu-14-04-lts-6-2-2-ensure-no-legacy-entries-exist-in

---


# 6.2.2 Ensure no legacy "+" entries exist in /etc/passwd (Scored)

## Profile Applicability

- Level 1 - Server
- Level 1 - Workstation

## Description

The character `+` in various files used to be markers for systems to insert data from NIS maps at a certain point in a system configuration file. These entries are no longer required on most systems, but may exist in files that have been imported from other platforms.

## Rationale

These entries may provide an avenue for attackers to gain privileged access on the system.

## Audit Procedure

Run the following command and verify that no output is returned:

```bash
grep '^\+:' /etc/passwd
```

## Expected Result

No output should be returned.

## Remediation

Remove any legacy '+' entries from `/etc/passwd` if they exist.

## Default Value

Not applicable.

## References

None

## CIS Controls

16.9 Configure Account Access Centrally - Configure access for all accounts through a centralized point of authentication, for example Active Directory or LDAP. Configure network and security devices for centralized authentication as well.

## Profile

- Level 1

