PHTN-30-000032 - The Photon operating system must disable the loading of unnecessary kernel modules.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version


To support the requirements and principles of least functionality, the operating system must provide only essential capabilities and limit the use of modules, protocols, and/or services to only those required for the proper functioning of the product.

Satisfies: SRG-OS-000096-GPOS-00050, SRG-OS-000114-GPOS-00059


Navigate to and open:


Set the contents as follows:

install sctp /bin/false
install dccp /bin/false
install dccp_ipv4 /bin/false
install dccp_ipv6 /bin/false
install ipx /bin/false
install appletalk /bin/false
install decnet /bin/false
install rds /bin/false
install tipc /bin/false
install bluetooth /bin/false
install usb_storage /bin/false
install ieee1394 /bin/false
install cramfs /bin/false
install freevxfs /bin/false
install jffs2 /bin/false
install hfs /bin/false
install hfsplus /bin/false
install squashfs /bin/false
install udf /bin/false

See Also

Item Details

References: CAT|II, CCI|CCI-000382, CCI|CCI-000778, Rule-ID|SV-256509r887201_rule, STIG-ID|PHTN-30-000032, Vuln-ID|V-256509

Plugin: Unix

Control ID: 2f6a8517abc9831319e1296af5352b6e842d7613d5ae4b1cfa96c12d635b3b3a