GEN008800 - The package management tool must cryptographically verify the authenticity of packages during install - '/etc/yum.repos.d/*'

Information

To prevent the installation of software from unauthorized sources, the system package management tool must use cryptographic algorithms to verify the packages are authentic.

Solution

Edit the YUM configuration containing 'gpgcheck=0' and set the value to '1'.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-5(3), CAT|III, CCI|CCI-000351, Group-ID|V-22588, Rule-ID|SV-26990r2_rule, STIG-ID|GEN008800, Vuln-ID|V-22588

Plugin: Unix

Control ID: 000dadcfa808092802ab9bbfc89f9c9e4b47e28b5288ccdaf74ea6957d89df24