Skip to content

II - Mission Support Sensitive

Rules and Groups employed by this XCCDF Profile

  • For RHEL 8 systems using Domain Name Servers (DNS) resolution, at least two name servers must be configured.

    To provide availability for name resolution services, multiple redundant name servers are mandated. A failure in name resolution could lead to the failure of security functions requiring name resol...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • Executable search paths within the initialization files of all local interactive RHEL 8 users must only contain paths that resolve to the system default or the users home directory.

    The executable search path (typically the PATH environment variable) contains a list of directories for the shell to search to find executables. If this path includes the current working directory ...
    Rule Medium Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • All RHEL 8 world-writable directories must be owned by root, sys, bin, or an application user.

    If a world-writable directory is not owned by root, sys, bin, or an application User Identifier (UID), unauthorized users may be able to modify files created by others. The only authorized public ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules