1.2.1 Ensure package manager repositories are properly configured

Information

Systems need to have package manager repositories properly configured to ensure they receive the latest patches and updates.

Rationale:

If a system's package manager repositories are misconfigured, important patches may not be identified, or a rogue repository could introduce compromised software.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure your package manager repositories according to your vendor.
As an alternative, package manager repositories from nginx.org are available for a variety of Linux platforms.

See Also

https://workbench.cisecurity.org/files/4538

Item Details

Category: RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|RA-5, 800-53|SI-2, 800-53|SI-2(2), CSCv7|3.4, CSCv7|3.5

Plugin: Unix

Control ID: 6c03ec4ee0e63cd59d1b40c1f64a474d57a8120980e41c1a8d174233e90982b1