Item Search

NameAudit NamePluginCategory
ALMA-09-002000 - AlmaLinux OS 9 must be able to directly initiate a session lock for all connection types using smart card when the smart card is removed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-002880 - All AlmaLinux OS 9 remote access methods must be monitored.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-003980 - AlmaLinux OS 9 must implement DOD-approved encryption in the OpenSSL package.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-004310 - AlmaLinux OS 9 must use the TuxCare ESU repository.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL, MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-005190 - AlmaLinux OS 9 must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/gshadow.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-006840 - AlmaLinux OS 9 must have the sudo package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-007610 - AlmaLinux OS 9 must automatically lock the root account until the root account is released by an administrator when three unsuccessful logon attempts occur during a 15-minute time period.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-007940 - AlmaLinux OS 9 must configure the use of the pam_faillock.so module in the /etc/pam.d/password-auth file.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-008490 - AlmaLinux OS 9 must prevent users from disabling the Standard Mandatory DOD Notice and Consent Banner for graphical user interfaces.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-008710 - AlmaLinux OS 9 must display the Standard Mandatory DOD Notice and Consent Banner before granting local or remote access to the system via a command line user logon.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-009700 - AlmaLinux OS 9 must ensure cryptographic verification of vendor software packages.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-009920 - AlmaLinux OS 9 must check the GPG signature of repository metadata before package installation.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-010250 - AlmaLinux OS 9 system commands must be group-owned by root or a system account.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-011680 - AlmaLinux OS 9 must disable the kernel.core_pattern.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-012230 - AlmaLinux OS 9 must disable the ability of a user to accidentally press Ctrl-Alt-Del and cause a system to shut down or reboot.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-012670 - AlmaLinux OS 9 /etc/group- file must be group owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-012780 - AlmaLinux OS 9 /etc/group- file must be owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-013110 - AlmaLinux OS 9 /etc/group file must be owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-013990 - AlmaLinux OS 9 /etc/gshadow file must be group-owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-014430 - AlmaLinux OS 9 must disable the user list at logon for graphical user interfaces.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-014760 - All AlmaLinux OS 9 local interactive user home directories must be group-owned by the home directory owner's primary group.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-015420 - AlmaLinux OS 9 must not allow unattended or automatic logon via the graphical user interface.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-015750 - AlmaLinux OS 9 must not allow blank or null passwords.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-015860 - AlmaLinux OS 9 must not have accounts configured with blank or null passwords.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-015970 - AlmaLinux OS 9 /etc/passwd- file must be group-owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-016080 - AlmaLinux OS 9 /etc/passwd- file must be owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-016190 - AlmaLinux OS 9 /etc/passwd- file must have mode 0644 or less permissive to prevent unauthorized access.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-017510 - AlmaLinux OS 9 must set the umask value to 077 for all local interactive user accounts.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-018390 - AlmaLinux OS 9 must prevent the use of dictionary words for passwords.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-019050 - AlmaLinux OS 9 must not respond to Internet Control Message Protocol (ICMP) echoes sent to a broadcast address.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-019160 - AlmaLinux OS 9 must not enable IP packet forwarding unless the system is a router.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-019600 - AlmaLinux OS 9 must have the nss-tools package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-019930 - AlmaLinux OS 9 must not send Internet Control Message Protocol (ICMP) redirects.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-020040 - There must be no .shosts files on AlmaLinux OS 9.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-020480 - The AlmaLinux OS 9 SSH server configuration file must be group-owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-020590 - The AlmaLinux OS 9 SSH server configuration file must be owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-020920 - AlmaLinux OS 9 SSH private host key files must have mode 0640 or less permissive.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-021910 - AlmaLinux OS 9 effective dconf policy must match the policy keyfiles.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-022130 - All AlmaLinux OS 9 local initialization files must have mode 0740 or less permissive.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-022460 - AlmaLinux OS 9 must disable the ability of a user to restart the system from the login screen.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-023560 - AlmaLinux OS 9 must configure a DNS processing mode set be Network Manager.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-024330 - AlmaLinux OS 9 security patches and updates must be installed and up to date.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-024660 - AlmaLinux OS 9 must have the rng-tools package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-025320 - AlmaLinux OS 9 must use a separate file system for /var/log.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-025650 - AlmaLinux OS 9 must disable virtual system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-027080 - AlmaLinux OS 9 must mount /tmp with the nosuid option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-027190 - AlmaLinux OS 9 must mount /var/log/audit with the nodev option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-029390 - AlmaLinux OS 9 must not have the cups package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-029720 - AlmaLinux OS 9 must be configured to disable Bluetooth.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ESXI-70-000060 - All port groups on standard switches must be configured to reject guest Media Access Control (MAC) address changes.DISA STIG VMware vSphere 7.0 ESXi v1r4VMware

CONFIGURATION MANAGEMENT