I - Mission Critical Classified
Rules and Groups employed by this XCCDF Profile
-
SRG-OS-000075-GPOS-00043
<GroupDescription></GroupDescription>Group -
SLEM 5 must be configured to create or update passwords with a minimum lifetime of 24 hours (one day).
<VulnDiscussion>Enforcing a minimum password lifetime helps prevent repeated password changes to defeat the password reuse or history enforce...Rule Medium Severity -
SRG-OS-000076-GPOS-00044
<GroupDescription></GroupDescription>Group -
SLEM 5 must be configured to create or update passwords with a maximum lifetime of 60 days.
<VulnDiscussion>Any password, no matter how complex, can eventually be cracked. Therefore, passwords need to be changed periodically. If SLEM...Rule Medium Severity -
SRG-OS-000375-GPOS-00160
<GroupDescription></GroupDescription>Group -
SLEM 5 must have the packages required for multifactor authentication to be installed.
<VulnDiscussion>Using an authentication device, such as a Common Access Card (CAC) or token separate from the information system, ensures tha...Rule Medium Severity -
SRG-OS-000068-GPOS-00036
<GroupDescription></GroupDescription>Group -
SLEM 5 must implement multifactor authentication for access to privileged accounts via pluggable authentication modules (PAM).
<VulnDiscussion>Using an authentication device, such as a Common Access Card (CAC) or token that is separate from the information system, ens...Rule Medium Severity -
SRG-OS-000375-GPOS-00160
<GroupDescription></GroupDescription>Group -
SLEM 5 must implement certificate status checking for multifactor authentication.
<VulnDiscussion>Using an authentication device, such as a Common Access Card (CAC) or token separate from the information system, ensures cre...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.