Item Search

NameAudit NamePluginCategory
OL09-00-001090 - OL 9 passwords must have a 24-hour minimum password lifetime restriction in /etc/shadow.DISA Oracle Linux 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

OL09-00-001125 - OL 9 must prevent the use of dictionary words for passwords.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002011 - OL 9 must prevent special devices on file systems that are imported via Network File System (NFS).DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002012 - OL 9 must prevent code from being executed on file systems that are imported via Network File System (NFS).DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002013 - OL 9 must prevent files with the setuid and setgid bit set from being executed on file systems that are imported via Network File System (NFS).DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002020 - OL 9 must prevent code from being executed on file systems that are used with removable media.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002031 - OL 9 must prevent files with the setuid and setgid bit set from being executed on the /boot directory.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002050 - OL 9 must mount /tmp with the nodev option.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002064 - OL 9 must mount /var/log/audit with the nodev option.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002071 - OL 9 must prevent files with the setuid and setgid bit set from being executed on file systems that contain user home directories.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002101 - OL 9 must disable the graphical user interface autorun function unless required.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002122 - OL 9 must prevent a user from overriding the banner-message-enable setting for the graphical user interface.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002160 - OL 9 must be able to directly initiate a session lock for all connection types using smart card when the smart card is removed.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002330 - OL 9 must enable Linux audit logging for the USBGuard daemon.DISA Oracle Linux 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

OL09-00-002347 - OL 9 must be configured so that all network connections associated with SSH traffic are terminated after 10 minutes of becoming unresponsive.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL, MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002349 - OL 9 SSH daemon must not allow known hosts authentication.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002350 - OL 9 SSH daemon must disable remote X connections for interactive users.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002356 - OL 9 SSH daemon must not allow Kerberos authentication.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002358 - OL 9 must not allow users to override SSH environment variables.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002359 - OL 9 SSHD must accept public key authentication.DISA Oracle Linux 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

OL09-00-002361 - OL 9 must restrict the use of the su command.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002383 - OL 9 must disable core dumps for all users.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002393 - OL 9 must disable virtual system calls.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002394 - OL 9 must clear the page allocator to prevent use-after-free attacks.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002401 - OL 9 must enable kernel parameters to enforce discretionary access control on hardlinks.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002403 - OL 9 debug-shell systemd service must be disabled.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002407 - OL 9 must prevent kernel profiling by nonprivileged users.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002408 - OL 9 must restrict exposed kernel pointer addresses access.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

OL09-00-002410 - OL 9 must restrict usage of ptrace to descendant processes.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002411 - OL 9 must automatically exit interactive command shell user sessions after 15 minutes of inactivity.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002412 - OL 9 must be configured so that the systemd Ctrl-Alt-Delete burst key sequence is disabled.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002415 - OL 9 must limit the number of concurrent sessions to ten for all accounts and/or account types.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002417 - OL 9 must maintain an account lock until the locked account is released by an administrator.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-002421 - OL 9 must implement DOD-approved encryption in the bind package.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002500 - OL 9 must be configured so that all system device files are correctly labeled to prevent unauthorized modification.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002505 - OL 9 system commands must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002506 - OL 9 system commands must have mode 755 or less permissive.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002511 - OL 9 local files and directories must have a valid group owner.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002513 - OL 9 local initialization files must have mode 0740 or less permissive.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002533 - OL 9 /etc/group- file must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002535 - OL 9 /etc/group- file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002536 - OL 9 /etc/group file must have mode 0644 or less permissive to prevent unauthorized access.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002538 - OL 9 /etc/gshadow file must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002544 - OL 9 /etc/passwd file must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002548 - OL 9 /etc/passwd file must have mode 0644 or less permissive to prevent unauthorized access.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002564 - OL 9 /var/log/messages file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

OL09-00-002570 - OL 9 audit tools must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

OL09-00-003006 - OL 9 groups must have unique Group ID (GID).DISA Oracle Linux 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

OL09-00-003052 - OL 9 local interactive user accounts must be assigned a home directory upon creation.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-003053 - OL 9 must be configured so that executable search paths within the initialization files of all local interactive users must only contain paths that resolve to the system default or the users home directory.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT