Skip to content

SLES 12 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-OS-000021-GPOS-00005

    Group
  • The SUSE operating system must lock an account after three consecutive invalid access attempts.

    By limiting the number of failed access attempts, the risk of unauthorized system access via user password guessing, otherwise known as brute-force attacks, is reduced. Limits are imposed by lockin...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00226

    Group
  • The SUSE operating system must enforce a delay of at least four (4) seconds between logon prompts following a failed logon attempt.

    Limiting the number of logon attempts over a certain time interval reduces the chances that an unauthorized user may gain access to an account.
    Rule Medium Severity
  • SRG-OS-000069-GPOS-00037

    Group
  • The SUSE operating system must enforce passwords that contain at least one upper-case character.

    Use of a complex password helps increase the time and resources required to compromise the password. Password complexity, or strength, is a measure of the effectiveness of a password in resisting a...
    Rule Medium Severity
  • SRG-OS-000070-GPOS-00038

    Group
  • The SUSE operating system must enforce passwords that contain at least one lower-case character.

    Use of a complex password helps increase the time and resources required to compromise the password. Password complexity, or strength, is a measure of the effectiveness of a password in resisting a...
    Rule Medium Severity
  • SRG-OS-000071-GPOS-00039

    Group
  • SRG-OS-000266-GPOS-00101

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules