OL07-00-020000 - Oracle Linux 7 must not install packages from the Extra Packages for Enterprise Linux (EPEL) repository.

Information

The EPEL is a repository of high-quality open-source packages for enterprise-class Linux distributions such as RHEL, CentOS, AlmaLinux, Rocky Linux, and Oracle Linux. These packages are not part of the official distribution but are built using the same Fedora build system to ensure compatibility and maintain quality standards.

Solution

Configure OL7 to not have access to the EPEL repo.

Remove the repo with the following command:

# yum remove oracle-epel-release-el7

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_7_V3R5_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|I, CCI|CCI-000381, Rule-ID|SV-221704r1155286_rule, STIG-ID|OL07-00-020000, STIG-Legacy|SV-108251, STIG-Legacy|V-99147, Vuln-ID|V-221704

Plugin: Unix

Control ID: 8bf263bc26429fd366a855e5c735469487b441956a5c9a2f4cc4a06311773809