1.36 SOL-11.1-020040

Information

The operating system must protect audit tools from unauthorized modification.

GROUP ID: V-216283
RULE ID: SV-216283r958612

Failure to maintain system configurations may result in privilege escalation.

Solution

The Software Installation Profile is required.

Configure the package system to ensure that digital signatures are verified.

# pfexec pkg set-property signature-policy verify

Check that package permissions are configured per vendor requirements.

# pfexec pkg verify

If any errors are reported unrelated to STIG changes, use:

# pfexec pkg fix

to bring configuration settings and permissions into factory compliance.

See Also

https://workbench.cisecurity.org/benchmarks/23765