Skip to content

III - Administrative Public

Rules and Groups employed by this XCCDF Profile

  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • System BIOS or system controllers supporting password protection must have administrator accounts/passwords configured, and no others. (Intel)

    &lt;VulnDiscussion&gt;A system's BIOS or system controller handles the initial startup of a system and its configuration must be protected from una...
    Rule Low Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • The system must require authentication before allowing modification of the boot devices or menus. Secure the GRUB Menu (Intel).

    &lt;VulnDiscussion&gt;The flexibility that GRUB provides creates a security risk if its configuration is modified by an unauthorized user. The fail...
    Rule Low Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • The operating system must implement transaction recovery for transaction-based systems.

    &lt;VulnDiscussion&gt;Recovery and reconstitution constitutes executing an operating system contingency plan comprised of activities to restore ess...
    Rule Medium Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • SNMP communities, users, and passphrases must be changed from the default.

    &lt;VulnDiscussion&gt;Whether active or not, default SNMP passwords, users, and passphrases must be changed to maintain security. If the service is...
    Rule High Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • A file integrity baseline must be created, maintained, and reviewed at least weekly to determine if unauthorized changes have been made to important system files located in the root file system.

    &lt;VulnDiscussion&gt;A file integrity baseline is a collection of file metadata used to evaluate the integrity of the system. A minimal baseline m...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules