SRG-OS-000104-GPOS-00051 Controls

STIG IDVersionTitleProduct
ALMA-09-032910V1R2Groups must have unique Group IDs (GIDs).
ALMA-09-033020V1R2Duplicate User IDs (UIDs) must not exist for interactive users.
ALMA-09-033130V1R2All AlmaLinux OS 9 interactive users must have a primary group that exists.
APPL-14-000090V2R3The macOS system must disable logon to other user's active and locked sessions.
APPL-14-000100V2R3The macOS system must disable root logon.
APPL-14-005052V2R3The macOS system must configure login window to prompt for username and password.
APPL-15-000090V1R3The macOS system must disable login to other users' active and locked sessions.
APPL-15-000100V1R3The macOS system must disable root login.
APPL-15-002066V1R3The macOS system must disable unattended or automatic login to the system.
APPL-15-005052V1R3The macOS system must configure the login window to prompt for username and password.
OL07-00-010500V3R2The Oracle Linux operating system must uniquely identify and must authenticate organizational users (or processes acting on behalf of organizational users) using multifactor authentication.
OL07-00-020300V3R2The Oracle Linux operating system must be configured so that all Group Identifiers (GIDs) referenced in the /etc/passwd file are defined in the /etc/group file.
OL09-00-000940V1R1OL 9 must use the CAC smart card driver.
OL09-00-003001V1R1OL 9 duplicate User IDs (UIDs) must not exist for interactive users.
OL09-00-003005V1R1OL 9 interactive users must have a primary group that exists.
OL09-00-003006V1R1OL 9 groups must have unique Group ID (GID).
RHEL-07-010500V3R9The Red Hat Enterprise Linux operating system must uniquely identify and must authenticate organizational users (or processes acting on behalf of organizational users) using multifactor authentication.
RHEL-07-020300V3R9The Red Hat Enterprise Linux operating system must be configured so that all Group Identifiers (GIDs) referenced in the /etc/passwd file are defined in the /etc/group file.
RHEL-08-020240V2R3RHEL 8 duplicate User IDs (UIDs) must not exist for interactive users.
RHEL-09-411030V2R4RHEL 9 duplicate User IDs (UIDs) must not exist for interactive users.
RHEL-09-411045V2R4All RHEL 9 interactive users must have a primary group that exists.
RHEL-09-411110V2R4RHEL 9 groups must have unique Group ID (GID).
RHEL-09-611160V2R4RHEL 9 must use the common access card (CAC) smart card driver.
SLES-12-010640V3R2The SUSE operating system must not have duplicate User IDs (UIDs) for interactive users.
SLES-15-010230V2R4The SUSE operating system must not have duplicate User IDs (UIDs) for interactive users.
UBTU-18-010444V2R15The Ubuntu operating system must uniquely identify interactive users.
UBTU-20-010010V2R1The Ubuntu operating system must uniquely identify interactive users.
UBTU-22-411015V2R4Ubuntu 22.04 LTS must uniquely identify interactive users.
UBTU-24-400000V1R1Ubuntu 24.04 LTS must uniquely identify interactive users.
WN10-SO-000005V3R4The built-in administrator account must be disabled.
WN11-SO-000005V2R3The built-in administrator account must be disabled.
WN16-00-000080V2R9Shared user accounts must not be permitted on the system.
WN16-00-000210V2R9Outdated or unused accounts must be removed from the system or disabled.
WN16-00-000220V2R9Windows Server 2016 accounts must require passwords.
WN19-00-000070V3R4Windows Server 2019 shared user accounts must not be permitted.
WN19-00-000200V3R4Windows Server 2019 accounts must require passwords.
WN22-00-000070V2R4Windows Server 2022 shared user accounts must not be permitted.
WN22-00-000200V2R4Windows Server 2022 accounts must require passwords.