SRG-OS-000363-GPOS-00150 Controls

STIG IDVersionTitleProduct
ALMA-09-009260V1R4AlmaLinux OS 9 must have the s-nail package installed.AlmaLinux OS 9
OL07-00-020030V3R3The Oracle Linux operating system must be configured so that a file integrity tool verifies the baseline operating system configuration at least weekly.Oracle Linux 7
OL07-00-020040V3R3The Oracle Linux operating system must be configured so that designated personnel are notified if baseline configurations are changed in an unauthorized manner.Oracle Linux 7
OL07-00-020028V3R3The Oracle Linux operating system must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.Oracle Linux 7
OL08-00-010360V2R6The OL 8 file integrity tool must notify the system administrator (SA) when changes to the baseline configuration or anomalies in the operation of any security functions are discovered within an organizationally defined frequency.Oracle Linux 8
OL08-00-010358V2R6OL 8 must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.Oracle Linux 8
OL09-00-000290V1R3OL 9 must have the s-nail package installed.Oracle Linux 9
OL09-00-000300V1R3OL 9 must have the Advanced Intrusion Detection Environment (AIDE) package installed.Oracle Linux 9
OL09-00-000301V1R3OL 9 must routinely check the baseline configuration for unauthorized changes and notify the system administrator (SA) when anomalies in the operation of any security functions are discovered.Oracle Linux 9
RHEL-07-020030V3R9The Red Hat Enterprise Linux operating system must be configured so that a file integrity tool verifies the baseline operating system configuration at least weekly.Red Hat Enterprise Linux 7
RHEL-07-020040V3R9The Red Hat Enterprise Linux operating system must be configured so that designated personnel are notified if baseline configurations are changed in an unauthorized manner.Red Hat Enterprise Linux 7
RHEL-08-010360V2R5The RHEL 8 file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered within an organizationally defined frequency.Red Hat Enterprise Linux 8
RHEL-08-010358V2R5RHEL 8 must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.Red Hat Enterprise Linux 8
RHEL-09-215095V2R6RHEL 9 must have the s-nail package installed.Red Hat Enterprise Linux 9
RHEL-09-651010V2R6RHEL 9 must have the AIDE package installed.Red Hat Enterprise Linux 9
RHEL-09-651015V2R6RHEL 9 must routinely check the baseline configuration for unauthorized changes and notify the system administrator when anomalies in the operation of any security functions are discovered.Red Hat Enterprise Linux 9
SLES-12-010500V3R2Advanced Intrusion Detection Environment (AIDE) must verify the baseline SUSE operating system configuration at least weekly.SUSE Linux Enterprise 12
SLES-12-010499V3R2The SUSE operating system must use a file integrity tool to verify correct operation of all security functions.SUSE Linux Enterprise 12
SLES-12-010498V3R2The SUSE operating system must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.SUSE Linux Enterprise 12
SLES-15-010420V2R4Advanced Intrusion Detection Environment (AIDE) must verify the baseline SUSE operating system configuration at least weekly.SUSE Linux Enterprise 15
SLES-15-010419V2R4The SUSE operating system must use a file integrity tool to verify correct operation of all security functions.SUSE Linux Enterprise 15
SLES-15-010418V2R4The SUSE operating system must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.SUSE Linux Enterprise 15
TOSS-04-010210V2R3The TOSS file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered within an organizationally defined frequency.Tri-Lab Operating System Stack
UBTU-18-010508V2R15The Ubuntu operating system must notify designated personnel if baseline configurations are changed in an unauthorized manner. The file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered.Ubuntu 18.04
UBTU-20-010437V1R9The Ubuntu operating system must notify designated personnel if baseline configurations are changed in an unauthorized manner. The file integrity tool must notify the system administrator (SA) when changes to the baseline configuration or anomalies in the operation of any security functions are discovered.Ubuntu 20.04
UBTU-22-651020V2R6Ubuntu 22.04 LTS must notify designated personnel if baseline configurations are changed in an unauthorized manner. The file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered.Ubuntu 22.04
WN16-00-000240V2R9System files must be monitored for unauthorized changes.Microsoft Windows Server 2016
WN19-00-000220V3R6Windows Server 2019 system files must be monitored for unauthorized changes.Microsoft Windows Server 2019
WN22-00-000220V2R6Windows Server 2022 system files must be monitored for unauthorized changes.Microsoft Windows Server 2022