SOL-11.1-090270 - The operating system must identify potentially security-relevant error conditions.

Information

Security functional testing involves testing the operating system for conformance to the operating system security function specifications, as well as for the underlying security model. The need to verify security functionality applies to all security functions. The conformance criteria state the conditions necessary for the operating system to exhibit the desired security behavior or satisfy a security property. For example, successful login triggers an audit entry.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install, configure, and run DoD-approved SCAP compliance checking software on a periodic basis. Review the output of the software and document any out-of-compliance issues.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_x86_V2R9_STIG.zip

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-6a., CAT|II, CCI|CCI-002696, Rule-ID|SV-224673r854575_rule, STIG-ID|SOL-11.1-090270, STIG-Legacy|SV-60775, STIG-Legacy|V-47903, Vuln-ID|V-224673

Plugin: Unix

Control ID: 2fbedf78d7479e70ef364b2819a0649a37e41365cd1bbba50d4d8b5375f3221b