Revision 1.2

May 24, 2023
Functional Update
  • OL08-00-010161 - OL 8 must prevent system daemons from using Kerberos for authentication.
  • OL08-00-010360 - The OL 8 file integrity tool must notify the System Administrator (SA) when changes to the baseline configuration or anomalies in the operation of any security functions are discovered within an organizationally defined frequency - grep aide /etc/crontab /var/spool/cron/root
  • OL08-00-010600 - OL 8 file systems must not interpret character or block special devices from untrusted file systems.
  • OL08-00-010610 - OL 8 file systems must not execute binary files on removable media.
  • OL08-00-010620 - OL 8 must prevent files with the setuid and setgid bit set from being executed on file systems that are used with removable media.
  • OL08-00-040001 - OL 8 must not have any automated bug reporting tools installed.
  • OL08-00-040342 - OL 8 SSH server must be configured to use only FIPS-validated key exchange algorithms.