Skip to content

SLES 12 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The SUSE operating system audit tools must have the proper permissions configured to protect against unauthorized access.

    Protecting audit information also includes identifying and protecting the tools used to view and manipulate log data. Therefore, protecting audit tools is necessary to prevent unauthorized operatio...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000004-GPOS-00004

    Group
  • SRG-OS-000004-GPOS-00004

    Group
  • The SUSE operating system must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/group.

    Once an attacker establishes initial access to a system, the attacker often attempts to create a persistent method of reestablishing access. One way to accomplish this is for the attacker to simply...
    Rule Medium Severity
  • SRG-OS-000004-GPOS-00004

    Group
  • The SUSE operating system must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/shadow.

    Once an attacker establishes initial access to a system, the attacker often attempts to create a persistent method of reestablishing access. One way to accomplish this is for the attacker to simply...
    Rule Medium Severity
  • SRG-OS-000004-GPOS-00004

    Group
  • The SUSE operating system must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/opasswd.

    Once an attacker establishes initial access to a system, the attacker often attempts to create a persistent method of reestablishing access. One way to accomplish this is for the attacker to simply...
    Rule Medium Severity
  • SRG-OS-000327-GPOS-00127

    Group
  • The SUSE operating system must generate audit records for all uses of the privileged functions.

    Misuse of privileged functions, either intentionally or unintentionally by authorized users, or by unauthorized external entities that have compromised information system accounts, is a serious and...
    Rule Low Severity
  • SRG-OS-000037-GPOS-00015

    Group
  • SRG-OS-000037-GPOS-00015

    Group
  • The SUSE operating system must generate audit records for all uses of the sudo command.

    Reconstruction of harmful events or forensic analysis is not possible if audit records do not contain enough information. At a minimum, the organization must audit the full-text recording of privi...
    Rule Low Severity
  • SRG-OS-000037-GPOS-00015

    Group
  • SRG-OS-000037-GPOS-00015

    Group
  • The SUSE operating system must generate audit records for all uses of the mount command.

    Reconstruction of harmful events or forensic analysis is not possible if audit records do not contain enough information. At a minimum, the organization must audit the full-text recording of privi...
    Rule Low Severity
  • SRG-OS-000037-GPOS-00015

    Group
  • The SUSE operating system must generate audit records for all uses of the umount command.

    Reconstruction of harmful events or forensic analysis is not possible if audit records do not contain enough information. At a minimum, the organization must audit the full-text recording of privi...
    Rule Low Severity
  • SRG-OS-000037-GPOS-00015

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules