Skip to content

Commit 682fd39

Browse files
committed
Add two new STIG IDs for RHEL 8 openssh ids
1 parent f08fd7a commit 682fd39

File tree

5 files changed

+12
-2
lines changed

5 files changed

+12
-2
lines changed

linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_openssh_conf_crypto_policy/rule.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -30,7 +30,7 @@ references:
3030
disa: CCI-001453
3131
nist: AC-17(2)
3232
srg: SRG-OS-000033-GPOS-00014,SRG-OS-000125-GPOS-00065,SRG-OS-000250-GPOS-00093,SRG-OS-000393-GPOS-00173,SRG-OS-000394-GPOS-00174,SRG-OS-000423-GPOS-00187
33-
stigid@rhel8: RHEL-08-010020
33+
stigid@rhel8: RHEL-08-010020,RHEL-08-010296
3434

3535
ocil_clause: 'Crypto Policy for OpenSSH client is not configured correctly'
3636

linux_os/guide/system/software/integrity/crypto/harden_sshd_macs_openssh_conf_crypto_policy/rule.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ references:
2828
disa: CCI-000877,CCI-001453
2929
nist: AC-17(2)
3030
srg: SRG-OS-000125-GPOS-00065,SRG-OS-000250-GPOS-00093
31-
stigid@rhel8: RHEL-08-010020
31+
stigid@rhel8: RHEL-08-010020,RHEL-08-010296
3232

3333
ocil_clause: 'Crypto Policy for OpenSSH client is not configured correctly'
3434

products/rhel8/profiles/stig.profile

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -220,6 +220,12 @@ selections:
220220
# RHEL-08-010295
221221
- configure_gnutls_tls_crypto_policy
222222

223+
# RHEL-08-010296
224+
- harden_sshd_macs_openssh_conf_crypto_policy
225+
226+
# RHEL-08-010297
227+
- harden_sshd_ciphers_openssh_conf_crypto_policy
228+
223229
# RHEL-08-010300
224230
- file_permissions_binary_dirs
225231

tests/data/profile_stability/rhel8/stig.profile

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -249,7 +249,9 @@ selections:
249249
- grub2_uefi_admin_username
250250
- grub2_uefi_password
251251
- grub2_vsyscall_argument
252+
- harden_sshd_ciphers_openssh_conf_crypto_policy
252253
- harden_sshd_ciphers_opensshserver_conf_crypto_policy
254+
- harden_sshd_macs_openssh_conf_crypto_policy
253255
- harden_sshd_macs_opensshserver_conf_crypto_policy
254256
- install_smartcard_packages
255257
- installed_OS_is_vendor_supported

tests/data/profile_stability/rhel8/stig_gui.profile

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -260,7 +260,9 @@ selections:
260260
- grub2_uefi_admin_username
261261
- grub2_uefi_password
262262
- grub2_vsyscall_argument
263+
- harden_sshd_ciphers_openssh_conf_crypto_policy
263264
- harden_sshd_ciphers_opensshserver_conf_crypto_policy
265+
- harden_sshd_macs_openssh_conf_crypto_policy
264266
- harden_sshd_macs_opensshserver_conf_crypto_policy
265267
- install_smartcard_packages
266268
- installed_OS_is_vendor_supported

0 commit comments

Comments
 (0)