DISA STIG Solaris 10 X86 v2r4

Audit Details

Name: DISA STIG Solaris 10 X86 v2r4

Updated: 6/17/2024

Authority: DISA STIG

Plugin: Unix

Revision: 1.2

Estimated Item Count: 779

File Details

Filename: DISA_STIG_Solaris_10_x86_v2r4.audit

Size: 1.26 MB

MD5: e958af64f6a9d8ddb1a9d2d29490c33e
SHA256: 7684ddfdb15ceac47f0d1ce57ecedf49164af7bfe83714ba6f4d5600d849aa61

Audit Changelog

 
Revision 1.2

Jun 17, 2024

Miscellaneous
  • Metadata updated.
Revision 1.1

Sep 19, 2023

Functional Update
  • GEN000000-SOL00420 - Hidden extended file attributes must not exist on the system.
  • GEN000000-SOL00600 - The /etc/zones directory, and its contents, must not have an extended ACL.
  • GEN001160 - All files and directories must have a valid owner.
  • GEN001170 - All files and directories must have a valid group-owner.
  • GEN001290 - All manual page files must not have extended ACLs.
  • GEN001361 - NIS/NIS+/yp command files must not have extended ACLs.
  • GEN001590 - All run control scripts must have no extended ACLs.
  • GEN001810 - Skeleton files must not have extended ACLs.
  • GEN002380 - The owner, group owner, mode, ACL, and location of files with the setuid bit set must be documented using site-defined procedures.
  • GEN002440 - The owner, group-owner, mode, ACL, and location of files with the setgid bit set must be documented using site-defined procedures.
  • GEN002480 - Public directories must be the only world-writable directories and world-writable files must be located only in public directories - directories
  • GEN002480 - Public directories must be the only world-writable directories and world-writable files must be located only in public directories - files
  • GEN002500 - The sticky bit must be set on all public directories.
  • GEN002520 - All public directories must be owned by root or an application account.
  • GEN002540 - All public directories must be group-owned by root or an application group.
  • GEN003865 - Network analysis tools must not be installed.
  • GEN005340 - Management Information Base (MIB) files must have mode 0640 or less permissive.
  • GEN005350 - Management Information Base (MIB) files must not have extended ACLs.
  • GEN006640 - The system must use a virus scan program.
Miscellaneous
  • Metadata updated.
  • Variables updated.