DISA STIG Solaris 10 X86 v2r4

Audit Details

Name: DISA STIG Solaris 10 X86 v2r4

Updated: 9/19/2023

Authority: DISA STIG

Plugin: Unix

Revision: 1.1

Estimated Item Count: 779

File Details

Filename: DISA_STIG_Solaris_10_x86_v2r4.audit

Size: 1.26 MB

MD5: 4d8462f9c4455107ed4d5f2511b3674b
SHA256: 385df24a470bc62b3d83f11a4aeb2ecbd230ccc6ae130a7d97f79c96d7e767ee

Audit Changelog

 
Revision 1.1

Sep 19, 2023

Functional Update
  • GEN000000-SOL00420 - Hidden extended file attributes must not exist on the system.
  • GEN000000-SOL00600 - The /etc/zones directory, and its contents, must not have an extended ACL.
  • GEN001160 - All files and directories must have a valid owner.
  • GEN001170 - All files and directories must have a valid group-owner.
  • GEN001290 - All manual page files must not have extended ACLs.
  • GEN001361 - NIS/NIS+/yp command files must not have extended ACLs.
  • GEN001590 - All run control scripts must have no extended ACLs.
  • GEN001810 - Skeleton files must not have extended ACLs.
  • GEN002380 - The owner, group owner, mode, ACL, and location of files with the setuid bit set must be documented using site-defined procedures.
  • GEN002440 - The owner, group-owner, mode, ACL, and location of files with the setgid bit set must be documented using site-defined procedures.
  • GEN002480 - Public directories must be the only world-writable directories and world-writable files must be located only in public directories - directories
  • GEN002480 - Public directories must be the only world-writable directories and world-writable files must be located only in public directories - files
  • GEN002500 - The sticky bit must be set on all public directories.
  • GEN002520 - All public directories must be owned by root or an application account.
  • GEN002540 - All public directories must be group-owned by root or an application group.
  • GEN003865 - Network analysis tools must not be installed.
  • GEN005340 - Management Information Base (MIB) files must have mode 0640 or less permissive.
  • GEN005350 - Management Information Base (MIB) files must not have extended ACLs.
  • GEN006640 - The system must use a virus scan program.
Miscellaneous
  • Metadata updated.
  • Variables updated.