II - Mission Support Sensitive
Rules and Groups employed by this XCCDF Profile
-
SRG-OS-000480-GPOS-00227
Group -
There must be no shosts.equiv files on SLEM 5.
The shosts.equiv files are used to configure host-based authentication for the system via SSH. Host-based authentication is not sufficient for preventing unauthorized access to the system, as it do...Rule High Severity -
SRG-OS-000480-GPOS-00229
Group -
SLEM 5 must not allow unattended or automatic logon via the graphical user interface (GUI).
Failure to restrict system access to authenticated users negatively impacts SLEM 5 security.Rule High Severity -
SRG-OS-000299-GPOS-00117
Group -
SLEM 5 wireless network adapters must be disabled unless approved and documented.
Without protection of communications with wireless peripherals, confidentiality and integrity may be compromised because unprotected communications can be intercepted and either read, altered, or u...Rule Medium Severity -
SRG-OS-000378-GPOS-00163
Group -
SLEM 5 must disable the USB mass storage kernel module.
Without identifying devices, unidentified or unknown devices may be introduced, thereby facilitating malicious activity. Peripherals include but are not limited to such devices as flash drives, ex...Rule Medium Severity -
SRG-OS-000480-GPOS-00227
Group -
All SLEM 5 local interactive user accounts, upon creation, must be assigned a home directory.
If local interactive users are not assigned a valid home directory, there is no place for the storage and control of files they should own.Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.