Skip to content

CloudLinux AlmaLinux OS 9 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • AlmaLinux OS 9 /etc/group file must be owned by root.

    The "/etc/group" file contains information regarding groups that are configured on the system. Protection of this file is important for system security.
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000480-GPOS-00227

    Group
  • The /boot/grub2/grub.cfg file must be group-owned by root.

    The "root" group is a highly privileged group. Furthermore, the group-owner of this file should not have any access privileges anyway.
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • The /boot/grub2/grub.cfg file must be owned by root.

    The "/boot/grub2/grub.cfg" file stores sensitive system configuration. Protection of this file is critical for system security.
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • AlmaLinux OS 9 must disable the ability of systemd to spawn an interactive boot process.

    Using interactive or recovery boot, the console user could disable auditing, firewalls, or other services, weakening system security.
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000480-GPOS-00227

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules