Skip to content

Canonical Ubuntu 18.04 LTS Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The Ubuntu operating system must display the date and time of the last successful account logon upon logon.

    Configuring the Ubuntu operating system to implement organization-wide security implementation guides and security checklists ensures compliance with federal standards and establishes a common secu...
    Rule Low Severity
  • SRG-OS-000021-GPOS-00005

    Group
  • The Ubuntu operating system must be configured so that three consecutive invalid logon attempts by a user automatically locks the account until released by an administrator.

    By limiting the number of failed logon attempts, the risk of unauthorized system access via user password guessing, otherwise known as brute-force attacks, is reduced. Limits are imposed by locking...
    Rule Medium Severity
  • SRG-OS-000024-GPOS-00007

    Group
  • SRG-OS-000109-GPOS-00056

    Group
  • The Ubuntu operating system must prevent direct login into the root account.

    To assure individual accountability and prevent unauthorized access, organizational users must be individually identified and authenticated. A group authenticator is a generic account used by mult...
    Rule Medium Severity
  • SRG-OS-000134-GPOS-00068

    Group
  • The Ubuntu operating system must be configured so that only users who need access to security functions are part of the sudo group.

    An isolation boundary provides access control and protects the integrity of the hardware, software, and firmware that perform security functions. Security functions are the hardware, software, and...
    Rule High Severity
  • SRG-OS-000228-GPOS-00088

    Group
  • SRG-OS-000069-GPOS-00037

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules