> Source: [sk180695](https://support.checkpoint.com/results/sk/sk180695)

# sk180695 - Tenable scan identifies Check Point host with an OpenSSH Account Enumeration vulnerability even if OPIE is disabled or not present

| Property | Value |
|----------|-------|
| Solution ID | sk180695 |
| Date Created | 2023-03-07 |
| Last Modified | 2023-03-08 |
| Technical Level | General |
| Products | Hardware |
| Versions | Not Version-Specific |
| OS | Gaia |

## Symptoms

- Tenable scan identifies Check Point host with an OpenSSH Account Enumeration vulnerability even if OPIE is disabled or not present as a PAM module.

## Solution

Check Point does not install the OPIE PAM module as part of the Gaia operating system and is not vulnerable.

**To verify the OPIE PAM module is not installed:**

1. Connect to the command line on the Security Gateway / each Cluster Member / Management Server / Log Server.

2. If your default shell is Gaia Clish, then log in to the Expert mode:

   `expert`
3. Run:

   `rpm -qa | grep -i opie`
4. If the OPIE PAM module is not installed, there is no output.

For more information, go [here](https://www.tenable.com/plugins/nessus/17705).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
