OL08-00-010120 – OL 8 must employ FIPS 140-2 approved cryptographic hashing algorithms for all stored passwords. Details The system must use a strong hashing algorithm to store the password. Passwords need to be protected at all...
OL08-00-010000 – OL 8 must be a vendor-supported release. Details Configuring the operating system to implement organization-wide security implementation guides and security checklists verifies compliance with federal standards and...
OL08-00-010130 – The OL 8 password-auth file must be configured to use a sufficient number of hashing rounds. Details The system must use a strong hashing algorithm to store the password. The system must use a sufficient number...
OL08-00-010001 – The OL 8 operating system must implement the Endpoint Security for Linux Threat Prevention tool. Details Adding endpoint security tools can provide the capability to automatically take actions in response to malicious behavior, which can...
OL08-00-010131 – The OL 8 system-auth file must be configured to use a sufficient number of hashing rounds. Details The system must use a strong hashing algorithm to store the password. The system must use a sufficient number...
OL08-00-010010 – OL 8 vendor-packaged system security patches and updates must be installed and up to date. Details Timely patching is critical for maintaining the operational availability, confidentiality, and integrity of information technology (IT) systems. However, failure...
OL08-00-010140 – OL 8 operating systems booted with United Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user mode and maintenance. Details If the system does not require valid authentication before it boots into single-user or maintenance mode, anyone who invokes...
OL08-00-010020 – OL 8 must implement NIST FIPS-validated cryptography for the following: to provision digital signatures, to generate cryptographic hashes, and to protect data requiring data-at-rest protections in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards. Details Use of weak or untested encryption algorithms undermines the purposes of using encryption to protect data. The operating system...
OL08-00-010030 – All OL 8 local disk partitions must implement cryptographic mechanisms to prevent unauthorized disclosure or modification of all information that requires at-rest protection. Details OL 8 systems handling data requiring ‘data-at-rest’ protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of...
OL08-00-010040 – OL 8 must display the Standard Mandatory DoD Notice and Consent Banner before granting local or remote access to the system via an SSH logon. – /etc/issue Details Display of a standardized and approved use notification before granting access to the operating system ensures privacy and security...