DISA Oracle Linux 8 STIG v2r5

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: DISA Oracle Linux 8 STIG v2r5

Updated: 12/22/2025

Authority: DISA STIG

Plugin: Unix

Revision: 1.3

Estimated Item Count: 375

File Details

Filename: DISA_STIG_Oracle_Linux_8_v2r5.audit

Size: 962 kB

MD5: 2c51d8a058dcda6298787ba8d0a70de4
SHA256: 31c352f437d4c70bea39e119a5b40b8b6c805a967bb833683a31bd24c9e9cc27

Audit Changelog

 
Revision 1.3

Dec 22, 2025

Miscellaneous
  • Audit deprecated.
  • Metadata updated.
  • References updated.
Revision 1.2

Dec 4, 2025

Functional Update
  • OL08-00-010020 - OL 8 must implement NIST FIPS-validated cryptography for the following: To provision digital signatures, to generate cryptographic hashes, and to protect data requiring data-at-rest protections in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.
Miscellaneous
  • Metadata updated.
  • Platform check updated.
Added
  • DISA_STIG_Oracle_Linux_8_v2r5.audit from DISA Oracle Linux 8 STIG v2r5
Removed
  • DISA_Oracle_Linux_8_STIG_v2r5.audit from DISA Oracle Linux 8 STIG v2r5
Revision 1.1

Oct 24, 2025

Functional Update
  • OL08-00-010600 - OL 8 file systems must not interpret character or block special devices from untrusted file systems.
  • OL08-00-010610 - OL 8 file systems must not execute binary files on removable media.
  • OL08-00-010620 - OL 8 must prevent files with the setuid and setgid bit set from being executed on file systems that are used with removable media.
  • OL08-00-010670 - OL 8 must disable kernel dumps unless needed.
  • OL08-00-010680 - For OL 8 systems using Domain Name Servers (DNS) resolution, at least two name servers must be configured.
  • OL08-00-020012 - OL 8 systems below version 8.2 must automatically lock an account when three unsuccessful logon attempts occur during a 15-minute time period.
  • OL08-00-020013 - OL 8 systems, versions 8.2 and above, must automatically lock an account when three unsuccessful logon attempts occur during a 15-minute time period.
Miscellaneous
  • Metadata updated.
  • Variables updated.