SRG-OS-000363-GPOS-00150 Controls

STIG IDVersionTitleProduct
ALMA-09-009260V1R2AlmaLinux OS 9 must have the s-nail package installed.
OL07-00-020030V3R2The Oracle Linux operating system must be configured so that a file integrity tool verifies the baseline operating system configuration at least weekly.
OL07-00-020040V3R2The Oracle Linux operating system must be configured so that designated personnel are notified if baseline configurations are changed in an unauthorized manner.
OL07-00-020028V3R2The Oracle Linux operating system must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.
OL08-00-010360V2R4The OL 8 file integrity tool must notify the system administrator (SA) when changes to the baseline configuration or anomalies in the operation of any security functions are discovered within an organizationally defined frequency.
OL08-00-010358V2R4OL 8 must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.
OL09-00-000290V1R1OL 9 must have the s-nail package installed.
OL09-00-000300V1R1OL 9 must have the Advanced Intrusion Detection Environment (AIDE) package installed.
OL09-00-000301V1R1OL 9 must routinely check the baseline configuration for unauthorized changes and notify the system administrator (SA) when anomalies in the operation of any security functions are discovered.
RHEL-07-020030V3R9The Red Hat Enterprise Linux operating system must be configured so that a file integrity tool verifies the baseline operating system configuration at least weekly.
RHEL-07-020040V3R9The Red Hat Enterprise Linux operating system must be configured so that designated personnel are notified if baseline configurations are changed in an unauthorized manner.
RHEL-08-010360V2R3The RHEL 8 file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered within an organizationally defined frequency.
RHEL-08-010358V2R3RHEL 8 must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.
RHEL-09-215095V2R4RHEL 9 must have the s-nail package installed.
RHEL-09-651010V2R4RHEL 9 must have the AIDE package installed.
RHEL-09-651015V2R4RHEL 9 must routinely check the baseline configuration for unauthorized changes and notify the system administrator when anomalies in the operation of any security functions are discovered.
SLES-12-010500V3R2Advanced Intrusion Detection Environment (AIDE) must verify the baseline SUSE operating system configuration at least weekly.
SLES-12-010499V3R2The SUSE operating system must use a file integrity tool to verify correct operation of all security functions.
SLES-12-010498V3R2The SUSE operating system must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.
SLES-15-010420V2R4Advanced Intrusion Detection Environment (AIDE) must verify the baseline SUSE operating system configuration at least weekly.
SLES-15-010419V2R4The SUSE operating system must use a file integrity tool to verify correct operation of all security functions.
SLES-15-010418V2R4The SUSE operating system must be configured to allow sending email notifications of unauthorized configuration changes to designated personnel.
UBTU-18-010508V2R15The Ubuntu operating system must notify designated personnel if baseline configurations are changed in an unauthorized manner. The file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered.
UBTU-20-010437V1R9The Ubuntu operating system must notify designated personnel if baseline configurations are changed in an unauthorized manner. The file integrity tool must notify the system administrator (SA) when changes to the baseline configuration or anomalies in the operation of any security functions are discovered.
UBTU-22-651020V2R4Ubuntu 22.04 LTS must notify designated personnel if baseline configurations are changed in an unauthorized manner. The file integrity tool must notify the system administrator when changes to the baseline configuration or anomalies in the operation of any security functions are discovered.
WN16-00-000240V2R9System files must be monitored for unauthorized changes.
WN19-00-000220V3R4Windows Server 2019 system files must be monitored for unauthorized changes.
WN22-00-000220V2R4Windows Server 2022 system files must be monitored for unauthorized changes.