Skip to content

GPOS SRG: General Purpose Operating System Security Requirements Guide

This General Purpose Operating System (GPOS) Security Requirements Guide (SRG) provides the technical security policies and requirements for applying security concepts to systems. This SRG specifies security requirements for commercial-off-the-shelf (COTS) or government- off-the-shelf (GOTS) general purpose operating systems (GPOSs) in networked environments. An operating system conformant to this SRG may be operated as a server system within a data center or a client system used directly by one or more human users. This guide assumes operation within a single security domain. Cross-domain solution (CDS) and Multi-Level Security (MLS) requirements are beyond the scope of this guide.

Scheme
public.cyber.mil /stigs/downloads/
Published by
DoD Cyber Exchange (sponsored by DISA: Defense Information Systems Agency)
  • SRG-OS-000123-GPOS-00064

    The information system must automatically remove or disable emergency accounts after the crisis is resolved or 72 hours.
  • SRG-OS-000125-GPOS-00065

    The operating system must employ strong authenticators in the establishment of nonlocal maintenance and diagnostic sessions.
  • SRG-OS-000126-GPOS-00066

  • SRG-OS-000132-GPOS-00067

    The operating system must separate user functionality (including user interface services) from operating system management functionality.
  • SRG-OS-000134-GPOS-00068

    The operating system must isolate security functions from nonsecurity functions.
  • SRG-OS-000138-GPOS-00069

    Operating systems must prevent unauthorized and unintended information transfer via shared system resources.
  • SRG-OS-000142-GPOS-00071

    The operating system must manage excess capacity, bandwidth, or other redundancy to limit the effects of information flooding types of Denial of Se...
  • SRG-OS-000163-GPOS-00072

    The operating system must terminate all network connections associated with a communications session at the end of the session, or as follows: for ...
  • SRG-OS-000185-GPOS-00079

    The operating system must protect the confidentiality and integrity of all information at rest.
  • SRG-OS-000191-GPOS-00080

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules