Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • SRG-OS-000480-GPOS-00227

    Group
  • The local initialization file lists of preloaded libraries must contain only absolute paths on AIX.

    The library preload list environment variable contains a list of libraries for the dynamic linker to load before loading the libraries required by the binary. If this list contains paths to librari...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • AIX package management tool must be used daily to verify system software.

    Verification using the system package management tool can be used to determine that system software has not been tampered with. This requirement is not applicable to systems not using package manag...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • The AIX DHCP client must not send dynamic DNS updates.

    Dynamic DNS updates transmit unencrypted information about a system including its name and address and should not be used unless needed.
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • AIX must not run any routing protocol daemons unless the system is a router.

    Routing protocol daemons are typically used on routers to exchange network topology information with other routers. If this software is used when not required, system network information may be unn...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • AIX must not process ICMP timestamp requests.

    The processing of Internet Control Message Protocol (ICMP) timestamp requests increases the attack surface of the system.
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules