Item Search

NameAudit NamePluginCategory
ALMA-09-022350 - The kdump service on AlmaLinux OS 9 must be disabled.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-022460 - AlmaLinux OS 9 must disable the ability of a user to restart the system from the login screen.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-023010 - AlmaLinux OS 9 must disable the use of user namespaces.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-024110 - AlmaLinux OS 9 must clear the page allocator to prevent use-after-free attacks.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-024550 - AlmaLinux OS 9 must enable the hardware random number generator entropy gatherer service.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-024660 - AlmaLinux OS 9 must have the rng-tools package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-025320 - AlmaLinux OS 9 must use a separate file system for /var/log.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-025870 - AlmaLinux OS 9 must be configured so that the rsyslog daemon does not accept log messages from other servers unless the server is being used for log aggregation.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-025980 - AlmaLinux OS 9 must prevent files with the setuid and setgid bit set from being executed on file systems that contain user home directories.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-027630 - AlmaLinux OS 9 must mount /var/log with the noexec option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-028290 - AlmaLinux OS 9 fapolicy module must be enabled.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-028400 - AlmaLinux OS 9 fapolicy module must be installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-028950 - AlmaLinux OS 9 must not have the sendmail package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-030050 - AlmaLinux OS 9 must disable the Stream Control Transmission Protocol (SCTP) kernel module.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-030600 - AlmaLinux OS 9 must not have the nfs-utils package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-030710 - AlmaLinux OS 9 must not have the rsh package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-030820 - AlmaLinux OS 9 must not install packages from the Extra Packages for Enterprise Linux (EPEL) repository.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-031150 - AlmaLinux OS 9 must not have the ypserv package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-032030 - AlmaLinux OS 9 must require users to provide a password for privilege escalation.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

ACCESS CONTROL

ALMA-09-032910 - Groups must have unique Group IDs (GIDs).DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-033240 - AlmaLinux OS 9 SSHD must accept public key authentication.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035000 - AlmaLinux OS 9 must prevent a user from overriding the disabling of the graphical user interface automount function.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035110 - AlmaLinux OS 9 must prevent a user from overriding the disabling of the graphical user interface autorun function.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036650 - AlmaLinux OS 9 must enforce password complexity by requiring that at least one numeric character be used.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036980 - AlmaLinux OS 9 must require the maximum number of repeating characters of the same character class be limited to four when passwords are changed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037530 - AlmaLinux OS 9 must be configured so that the Pluggable Authentication Module is configured to store only encrypted representations of passwords.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037750 - AlmaLinux OS 9 must not have any File Transfer Protocol (FTP) packages installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037970 - Passwords for existing users must have a 60-day maximum password lifetime restriction in /etc/shadow.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-038190 - Passwords for existing users must have a 24-hour minimum password lifetime restriction in /etc/shadow.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-038300 - Passwords for new users or password changes must have a 24-hour minimum password lifetime restriction in /etc/login.defs.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-039510 - The libreswan package must be installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-040500 - AlmaLinux OS 9 must terminate idle user sessions.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-040830 - AlmaLinux OS 9 must restrict exposed kernel pointer addresses access.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-040940 - AlmaLinux OS 9 must restrict usage of ptrace to descendant processes.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-042150 - Any AlmaLinux OS 9 world-writable directories must be owned by root, sys, bin, or an application user.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-042480 - AlmaLinux OS 9 must be configured to use TCP syncookies.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-043030 - AlmaLinux OS 9 must not allow users to override SSH environment variables.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-043800 - AlmaLinux OS 9 must not show boot up messages.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044460 - AlmaLinux OS 9 /var/log directory must have mode 0755 or less permissive.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044570 - AlmaLinux OS 9 must implement nonexecutable data to protect its memory from unauthorized code execution.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044680 - AlmaLinux OS 9 must enable mitigations against processor-based vulnerabilities.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-045125 - AlmaLinux OS 9 must be a supported release.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-045890 - AlmaLinux OS 9 must allow only the information system security manager (ISSM) (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-046550 - AlmaLinux OS 9 must enable Linux audit logging for the USBGuard daemon.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-047540 - AlmaLinux OS 9 must generate audit records for all account creations, modifications, disabling, and termination events that affect /var/log/lastlog.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-047870 - Successful/unsuccessful uses of the umount2 system call in AlmaLinux OS 9 must generate an audit record.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048200 - AlmaLinux OS 9 must generate audit records for any use of the "chacl" command.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048530 - AlmaLinux OS 9 must audit all uses of the chmod, fchmod, and fchmodat system calls.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-050070 - AlmaLinux OS 9 must generate audit records for any use of the "semanage" command.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-050290 - AlmaLinux OS 9 must generate audit records for any use of the "setfiles" command.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE