Item Search

NameAudit NamePluginCategory
ALMA-09-019490 - AlmaLinux OS 9 must be configured to prevent unrestricted mail relaying.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-019600 - AlmaLinux OS 9 must have the nss-tools package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-019710 - AlmaLinux OS 9 network interfaces must not be in promiscuous mode.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-019820 - AlmaLinux OS 9 must use reverse path filtering on all IP interfaces.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-019930 - AlmaLinux OS 9 must not send Internet Control Message Protocol (ICMP) redirects.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-020810 - AlmaLinux OS 9 must not allow a noncertificate trusted host SSH logon to the system.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-021690 - If the Trivial File Transfer Protocol (TFTP) server is required, the TFTP daemon must be configured to operate in secure mode.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-022020 - AlmaLinux OS 9 must be configured so that all system device files are correctly labeled to prevent unauthorized modification.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-022570 - AlmaLinux OS 9 must prevent a user from overriding the disable-restart-buttons setting for the graphical user interface.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-022790 - AlmaLinux OS 9 must prevent code from being executed on file systems that are used with removable media.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-023120 - AlmaLinux OS 9 must prevent special devices on file systems that are imported via Network File System (NFS).DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-023890 - The root account must be the only account having unrestricted access to an AlmaLinux OS 9 system.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-024990 - AlmaLinux OS 9 system accounts must not have an interactive login shell.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-025100 - AlmaLinux OS 9 must use a separate file system for /tmp.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-025430 - AlmaLinux OS 9 must use a separate file system for /var.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-026090 - AlmaLinux OS 9 must prevent device files from being interpreted on file systems that contain user home directories.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-026310 - AlmaLinux OS 9 must mount /boot with the nodev option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-026860 - AlmaLinux OS 9 must mount /tmp with the nodev option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-027300 - AlmaLinux OS 9 must mount /var/log/audit with the noexec option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-028510 - AlmaLinux OS 9 must disable remote management of the chrony daemon.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-030160 - AlmaLinux OS 9 must disable mounting of squashfs.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-031700 - AlmaLinux OS 9 must have the firewalld package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

ALMA-09-031920 - AlmaLinux OS 9 must require users to provide authentication for privilege escalation.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

ACCESS CONTROL

ALMA-09-032140 - AlmaLinux OS 9 must not be configured to bypass password requirements for privilege escalation.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

ACCESS CONTROL

ALMA-09-032470 - AlmaLinux OS 9 must restrict the use of the "su" command.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

ACCESS CONTROL

ALMA-09-033350 - AlmaLinux OS 9 must have the opensc package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-034340 - AlmaLinux OS 9 must use the CAC smart card driver.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035210 - AlmaLinux OS 9 must have the USBGuard package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035660 - AlmaLinux OS 9 must disable account identifiers (individuals, groups, roles, and devices) after 35 days of inactivity.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035880 - AlmaLinux OS 9 must ensure the password complexity module is enabled in the password-auth file.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036100 - AlmaLinux OS 9 must enforce password complexity rules for the root account.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036320 - AlmaLinux OS 9 must enforce password complexity by requiring that at least one special character be used.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036870 - AlmaLinux OS 9 must require the maximum number of repeating characters be limited to three when passwords are changed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037640 - AlmaLinux OS 9 must be configured so that interactive user account passwords are using strong password hashes.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-038080 - Passwords for new users or password changes must have a 60-day maximum password lifetime restriction in /etc/login.defs.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-038630 - AlmaLinux OS 9 must prohibit the use of cached authenticators after one day.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-039840 - AlmaLinux OS 9 must have the crypto-policies package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-040170 - AlmaLinux OS 9 must be configured so that all network connections associated with SSH traffic are terminated after 10 minutes of becoming unresponsive.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

ACCESS CONTROL, MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-040720 - AlmaLinux OS 9 must disable access to network bpf system call from nonprivileged processes.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-041490 - AlmaLinux OS 9 systemd-journald service must be enabled.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-042700 - All AlmaLinux OS 9 networked systems must have the OpenSSH client installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-044020 - AlmaLinux OS 9 /var/log/messages file must be group-owned by root.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044790 - AlmaLinux OS 9 must clear memory when it is freed to prevent use-after-free attacks.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-045120 - AlmaLinux OS 9 must remove all software components after updated versions have been installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-046000 - Successful/unsuccessful uses of the init command in AlmaLinux OS 9 must generate an audit record.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-046440 - AlmaLinux must generate audit records for any use of the "shutdown" command.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-046660 - AlmaLinux OS 9 must audit all uses of the delete_module, init_module and finit_module system calls.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-046770 - AlmaLinux OS 9 must generate audit records for all account creations, modifications, disabling, and termination events that affect /var/log/tallylog.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049080 - AlmaLinux OS 9 must generate audit records for all account creations, modifications, disabling, and termination events that affect /var/log/faillock.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-049300 - AlmaLinux OS 9 must audit all uses of the kmod command.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE