Skip to content

Canonical Ubuntu 22.04 LTS Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-OS-000074-GPOS-00042

    Group
  • SRG-OS-000185-GPOS-00079

    Group
  • SRG-OS-000258-GPOS-00099

    Group
  • Ubuntu 22.04 LTS must have directories that contain system commands set to a mode of "755" or less permissive.

    Protecting audit information also includes identifying and protecting the tools used to view and manipulate log data. Therefore, protecting audit tools is necessary to prevent unauthorized operatio...
    Rule Medium Severity
  • SRG-OS-000259-GPOS-00100

    Group
  • SRG-OS-000259-GPOS-00100

    Group
  • Ubuntu 22.04 LTS library files must have mode "755" or less permissive.

    If the operating system were to allow any user to make changes to software libraries, then those changes might be implemented without undergoing the appropriate testing and approvals that are part ...
    Rule Medium Severity
  • SRG-OS-000206-GPOS-00084

    Group
  • SRG-OS-000205-GPOS-00083

    Group
  • SRG-OS-000205-GPOS-00083

    Group
  • Ubuntu 22.04 LTS must generate system journal entries without revealing information that could be exploited by adversaries.

    Any operating system providing too much information in error messages risks compromising the data and security of the structure, and content of error messages needs to be carefully considered by th...
    Rule Medium Severity
  • SRG-OS-000206-GPOS-00084

    Group
  • SRG-OS-000256-GPOS-00097

    Group
  • Ubuntu 22.04 LTS must configure audit tools with a mode of "755" or less permissive.

    Protecting audit information also includes identifying and protecting the tools used to view and manipulate log data. Therefore, protecting audit tools is necessary to prevent unauthorized operatio...
    Rule Medium Severity
  • SRG-OS-000258-GPOS-00099

    Group
  • Ubuntu 22.04 LTS must have directories that contain system commands owned by "root".

    Protecting audit information also includes identifying and protecting the tools used to view and manipulate log data. Therefore, protecting audit tools is necessary to prevent unauthorized operatio...
    Rule Medium Severity
  • SRG-OS-000258-GPOS-00099

    Group
  • SRG-OS-000259-GPOS-00100

    Group
  • Ubuntu 22.04 LTS must have system commands owned by "root" or a system account.

    If Ubuntu 22.04 LTS were to allow any user to make changes to software libraries, then those changes might be implemented without undergoing the appropriate testing and approvals that are part of a...
    Rule Medium Severity
  • SRG-OS-000259-GPOS-00100

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules