Revision 1.5

Sep 19, 2023
Functional Update
  • OL07-00-020320 - The Oracle Linux operating system must be configured so that all files and directories have a valid owner.
  • OL07-00-020330 - The Oracle Linux operating system must be configured so that all files and directories have a valid group owner.
  • OL07-00-020660 - The Oracle Linux operating system must be configured so that all files and directories contained in local interactive user home directories have a valid owner.
  • OL07-00-020670 - The Oracle Linux operating system must be configured so that all files and directories contained in local interactive user home directories are group-owned by a group of which the home directory owner is a member.
  • OL07-00-020680 - The Oracle Linux operating system must be configured so that all files and directories contained in local interactive user home directories have a mode of 0750 or less permissive.
  • OL07-00-020710 - The Oracle Linux operating system must be configured so that all local initialization files have mode 0740 or less permissive.
  • OL07-00-020730 - The Oracle Linux operating system must be configured so that local initialization files do not execute world-writable programs.
  • OL07-00-020900 - The Oracle Linux operating system must be configured so that all system device files are correctly labeled to prevent unauthorized modification - device_t
  • OL07-00-020900 - The Oracle Linux operating system must be configured so that all system device files are correctly labeled to prevent unauthorized modification - unlabeled_t
  • OL07-00-021030 - The Oracle Linux operating system must be configured so that all world-writable directories are group-owned by root, sys, bin, or an application group.
  • OL07-00-021031 - The Oracle Linux operating system must be configured so that all world-writable directories are owned by root, sys, bin, or an application user.
  • OL07-00-021700 - The Oracle Linux operating system must not allow removable media to be used as the boot loader unless approved.
  • OL07-00-040540 - The Oracle Linux operating system must not contain .shosts files.
  • OL07-00-040550 - The Oracle Linux operating system must not contain shosts.equiv files.
Miscellaneous
  • Audit deprecated.
  • Metadata updated.
  • References updated.
  • Variables updated.