800-53|CM-3(5)

Title

AUTOMATED SECURITY RESPONSE

Description

The information system implements [Assignment: organization-defined security responses] automatically if baseline configurations are changed in an unauthorized manner.

Supplemental

Security responses include, for example, halting information system processing, halting selected system functions, or issuing alerts/notifications to organizational personnel when there is an unauthorized modification of a configuration item.

Reference Item Details

Category: CONFIGURATION MANAGEMENT

Parent Title: CONFIGURATION CHANGE CONTROL

Family: CONFIGURATION MANAGEMENT

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.3.1 Ensure AIDE is installedUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Server
1.3.1 Ensure AIDE is installedUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Workstation
1.3.1 Ensure AIDE is installedUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.3.1 Ensure AIDE is installedUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.3.2 Ensure filesystem integrity is regularly checkedUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.3.2 Ensure filesystem integrity is regularly checkedUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Server
1.3.2 Ensure filesystem integrity is regularly checkedUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Workstation
1.3.2 Ensure filesystem integrity is regularly checked - aideUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.3.2 Ensure filesystem integrity is regularly checked - cronUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.3.2 Ensure filesystem integrity is regularly checked - mailUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.9 UBTU-24-100130UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.11 Ensure the mailx package is installedUnixCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIG
1.22 WN16-00-000240WindowsCIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT II
1.22 WN16-00-000240WindowsCIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT II
1.22 WN19-00-000220WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT II
1.22 WN19-00-000220WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT II
1.22 WN22-00-000220WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II
1.22 WN22-00-000220WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT II
1.55 OL08-00-010358UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.57 OL08-00-010360UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.66 RHEL-09-215095UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.113 UBTU-22-651020UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II
1.351 RHEL-09-651010UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.352 RHEL-09-651015UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Oracle Linux 8 v4.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 8 STIG v2.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIG
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Rocky Linux 8 v3.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 8 v4.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS AlmaLinux OS 8 v4.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 10 v1.0.1 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Rocky Linux 10 v1.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS AlmaLinux OS 10 v1.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS AlmaLinux OS 10 v1.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS AlmaLinux OS 8 v4.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 8 STIG v2.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 8 v4.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Oracle Linux 8 v4.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Red Hat Enterprise Linux 10 v1.0.1 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Rocky Linux 10 v1.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Oracle Linux 10 v1.0.0 L1 Server
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Oracle Linux 10 v1.0.0 L1 Workstation
6.1.2 Ensure filesystem integrity is regularly checkedUnixCIS Rocky Linux 8 v3.0.0 L1 Server
ALMA-09-009260 - AlmaLinux OS 9 must have the s-nail package installed.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r4
ALMA-09-045340 - AlmaLinux OS 9 must have the Advanced Intrusion Detection Environment (AIDE) package installed.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r4
ALMA-09-045450 - AlmaLinux OS 9 must routinely check the baseline configuration for unauthorized changes and notify the system administrator when anomalies in the operation of any security functions are discovered.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r4
AZLX-23-001060 - Amazon Linux 2023 must have the Advanced Intrusion Detection Environment (AIDE) package installed.UnixDISA Amazon Linux 2023 STIG v1r2
AZLX-23-001065 - Amazon Linux 2023 must routinely check the baseline configuration for unauthorized changes and notify the system administrator when anomalies in the operation of any security functions are discovered.UnixDISA Amazon Linux 2023 STIG v1r2
AZLX-23-001095 - Amazon Linux 2023 must have the s-nail package installed.UnixDISA Amazon Linux 2023 STIG v1r2
AZLX-23-002570 - Amazon Linux 2023 must routinely check the baseline configuration for unauthorized changes and notify the system administrator when anomalies in the operation of any security functions are discovered.UnixDISA Amazon Linux 2023 STIG v1r2