SRG-OS-000191-GPOS-00080 Controls

STIG IDVersionTitleProduct
APPL-13-000015V1R5The macOS system must use an Endpoint Security Solution (ESS) and implement all DOD required modules.macOS 13 - Ventura
APPL-14-000015V1R2The macOS system must employ automated mechanisms to determine the state of system components.macOS 14 - Sonoma
OL07-00-020019V2R9The Oracle Linux operating system must implement the Endpoint Security for Linux Threat Prevention tool.Oracle Linux 7
OL08-00-010001V1R9The OL 8 operating system must implement the Endpoint Security for Linux Threat Prevention tool.Oracle Linux 8
RHEL-08-010001V1R9The RHEL 8 operating system must implement the Endpoint Security for Linux Threat Prevention tool.Red Hat Enterprise Linux 8
RHEL-09-211025V1R3RHEL 9 must implement the Endpoint Security for Linux Threat Prevention tool.Red Hat Enterprise Linux 9
SLES-12-010599V2R9The SUSE operating system must implement the Endpoint Security for Linux Threat Prevention tool.SUSE Linux Enterprise 12
SLES-15-010001V1R9The SUSE operating system must implement the Endpoint Security for Linux Threat Prevention tool.SUSE Linux Enterprise 15
UBTU-18-010021V2R15The Ubuntu operating system must deploy Endpoint Security for Linux Threat Prevention (ENSLTP).Ubuntu 18.04
UBTU-20-010415V1R9The Ubuntu operating system must deploy Endpoint Security for Linux Threat Prevention (ENSLTP).Ubuntu 20.04
UBTU-22-211010V1R1Ubuntu 22.04 LTS must deploy an Endpoint Security Solution.Ubuntu 22.04
WN10-00-000025V3R4Windows 10 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: Continuously, where ESS is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).Microsoft Windows 10
WN11-00-000025V2R5Windows 11 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: Continuously, where ESS is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).Microsoft Windows 11
WN16-00-000320V2R9Windows Server 2016 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where Endpoint Security Solution (ESS) is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).Microsoft Windows Server 2016
WN19-00-000290V3R6Windows Server 2019 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where Endpoint Security Solution (ESS) is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).Microsoft Windows Server 2019
WN22-00-000290V2R6Windows Server 2022 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where Endpoint Security Solution (ESS) is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).Microsoft Windows Server 2022