OL09-00-000244 - OL 9 cryptographic policy files must match files shipped with the operating system.

Information

The OL 9 package crypto-policies defines the cryptography policies for the system.

If the files are changed from those shipped with the operating system, it may be possible for OL 9 to use cryptographic functions that are not FIPS 140-3 approved.

Satisfies: SRG-OS-000478-GPOS-00223, SRG-OS-000396-GPOS-00176

Solution

Reinstall the crypto-policies package to remove any modifications.

$ sudo dnf reinstall -y crypto-policies

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_9_V1R2_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13, CAT|I, CCI|CCI-002450, Rule-ID|SV-271481r1091155_rule, STIG-ID|OL09-00-000244, Vuln-ID|V-271481

Plugin: Unix

Control ID: e6e1dde60aa55955b638f50f302d66600e3acc82bebee73efc4543e4a28a78a9