SRG-OS-000067-GPOS-00035 Controls

STIG IDVersionTitleProduct
RHEL-08-010100V1R6RHEL 8, for certificate-based authentication, must enforce authorized access to the corresponding private key.
WN19-SO-000350V3R1Windows Server 2019 users must be required to enter a password to access private keys stored on the computer.
APPL-14-001150V1R1The macOS system must disable password authentication for SSH.
APPL-14-003020V1R1The macOS system must enforce smart card authentication.
APPL-13-001060V1R5The macOS system must accept and verify Personal Identity Verification (PIV) credentials, implement a local cache of revocation data to support path discovery and validation in case of the inability to access revocation information via the network, and only allow the use of DOD PKI-established certificate authorities for verification of the establishment of protected sessions.
APPL-15-001150V1R1The macOS system must disable password authentication for SSH.
APPL-15-003020V1R1The macOS system must enforce smart card authentication.
ALMA-09-038850V1R1For PKI-based authentication, AlmaLinux OS 9 must enforce authorized access to the corresponding private key.
OL08-00-010100V1R6OL 8, for certificate-based authentication, must enforce authorized access to the corresponding private key.
OL09-00-000905V1R1OL 9, for PKI-based authentication, must enforce authorized access to the corresponding private key.
RHEL-09-611190V2R5RHEL 9, for PKI-based authentication, must enforce authorized access to the corresponding private key.
WN16-SO-000420V2R9Users must be required to enter a password to access private keys stored on the computer.
WN22-SO-000350V2R5Windows Server 2022 users must be required to enter a password to access private keys stored on the computer.