Skip to content

CloudLinux AlmaLinux OS 9 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • AlmaLinux OS 9 must restrict the use of the "su" command.

    The "su" program provides a "switch user" capability. It is commonly used to become root but can be used to switch to any user. Limiting access to such commands is considered a good security pract...
    Rule Medium Severity
  • SRG-OS-000104-GPOS-00051

    Group
  • SRG-OS-000104-GPOS-00051

    Group
  • SRG-OS-000104-GPOS-00051

    Group
  • All AlmaLinux OS 9 interactive users must have a primary group that exists.

    If a user is assigned the Group Identifier (GID) of a group that does not exist on the system, and a group with the GID is subsequently created, the user may have unintended rights to any files ass...
    Rule Medium Severity
  • SRG-OS-000105-GPOS-00052

    Group
  • SRG-OS-000375-GPOS-00160

    Group
  • AlmaLinux OS 9 must have the opensc package installed.

    Using an authentication device, such as a CAC or token that is separate from the information system, ensures that even if the information system is compromised, that compromise will not affect cred...
    Rule Medium Severity
  • SRG-OS-000375-GPOS-00160

    Group
  • SRG-OS-000375-GPOS-00160

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules