DISA STIG Oracle Linux 6 v2r7

Audit Details

Name: DISA STIG Oracle Linux 6 v2r7

Updated: 6/14/2024

Authority: DISA STIG

Plugin: Unix

Revision: 1.2

Estimated Item Count: 380

File Details

Filename: DISA_STIG_Oracle_Linux_6_v2r7.audit

Size: 702 kB

MD5: 4c97cf3ef154f667bbeaf1922642b40f
SHA256: becd0c96e201c17acc8c2a633d2bc1468dc11ff73f34d0eaf84c53463cdf2e0c

Audit Changelog

 
Revision 1.2

Jun 14, 2024

Functional Update
  • OL6-00-000516 - The system package management tool must verify ownership on all files and directories associated with packages.
  • OL6-00-000517 - The system package management tool must verify group-ownership on all files and directories associated with packages.
  • OL6-00-000518 - The system package management tool must verify permissions on all files and directories associated with packages.
  • OL6-00-000519 - The system package management tool must verify contents of all files associated with packages.
Miscellaneous
  • Metadata updated.
Revision 1.1

Sep 19, 2023

Functional Update
  • OL6-00-000021 - The Oracle Linux operating system must not contain .shosts or shosts.equiv files.
  • OL6-00-000045 - Library files must have mode 0755 or less permissive - '/lib'
  • OL6-00-000045 - Library files must have mode 0755 or less permissive - '/lib64'
  • OL6-00-000045 - Library files must have mode 0755 or less permissive - '/usr/lib'
  • OL6-00-000045 - Library files must have mode 0755 or less permissive - '/usr/lib64'
  • OL6-00-000046 - Library files must be owned by a system account - '/lib'
  • OL6-00-000046 - Library files must be owned by a system account - '/lib64'
  • OL6-00-000046 - Library files must be owned by a system account - '/usr/lib'
  • OL6-00-000046 - Library files must be owned by a system account - '/usr/lib64'
  • OL6-00-000046 - Library files must be owned by a system account - '/usr/local/lib'
  • OL6-00-000046 - Library files must be owned by a system account - '/usr/local/lib64'
  • OL6-00-000047 - All system command files must have mode 755 or less permissive - '/bin'
  • OL6-00-000047 - All system command files must have mode 755 or less permissive - '/sbin'
  • OL6-00-000047 - All system command files must have mode 755 or less permissive - '/usr/bin'
  • OL6-00-000047 - All system command files must have mode 755 or less permissive - '/usr/local/bin'
  • OL6-00-000047 - All system command files must have mode 755 or less permissive - '/usr/local/sbin'
  • OL6-00-000047 - All system command files must have mode 755 or less permissive - '/usr/sbin'
  • OL6-00-000048 - All system command files must be owned by root - '/bin'
  • OL6-00-000048 - All system command files must be owned by root - '/sbin'
  • OL6-00-000048 - All system command files must be owned by root - '/usr/bin'
  • OL6-00-000048 - All system command files must be owned by root - '/usr/local/bin'
  • OL6-00-000048 - All system command files must be owned by root - '/usr/local/sbin'
  • OL6-00-000048 - All system command files must be owned by root - '/usr/sbin'
  • OL6-00-000282 - There must be no world-writable files on the system.
  • OL6-00-000336 - The sticky bit must be set on all public directories.
  • OL6-00-000337 - All public directories must be owned by a system account.
  • OL6-00-000347 - There must be no .netrc files on the system.
Miscellaneous
  • Metadata updated.
  • References updated.
  • Variables updated.