SRG-OS-000125-GPOS-00065 Controls

STIG IDVersionTitleProduct
ALMA-09-040390V1R1AlmaLinux OS 9 must enable the Pluggable Authentication Module (PAM) interface for SSHD.
UBTU-18-010414V2R15The Ubuntu operating system must use strong authenticators in establishing nonlocal maintenance and diagnostic sessions.
UBTU-20-010035V1R9The Ubuntu operating system must use strong authenticators in establishing nonlocal maintenance and diagnostic sessions.
UBTU-24-500050V1R1Ubuntu 24.04 LTS must use strong authenticators in establishing nonlocal maintenance and diagnostic sessions.
WN22-CC-000470V2R1Windows Server 2022 Windows Remote Management (WinRM) client must not use Basic authentication.
WN22-CC-000490V2R1Windows Server 2022 Windows Remote Management (WinRM) client must not use Digest authentication.
WN22-CC-000500V2R1Windows Server 2022 Windows Remote Management (WinRM) service must not use Basic authentication.
WN10-CC-000330V2R8The Windows Remote Management (WinRM) client must not use Basic authentication.
WN10-CC-000345V2R8The Windows Remote Management (WinRM) service must not use Basic authentication.
WN10-CC-000360V2R8The Windows Remote Management (WinRM) client must not use Digest authentication.
WN11-CC-000330V2R1The Windows Remote Management (WinRM) client must not use Basic authentication.
WN11-CC-000345V2R1The Windows Remote Management (WinRM) service must not use Basic authentication.
WN11-CC-000360V2R1The Windows Remote Management (WinRM) client must not use Digest authentication.
UBTU-22-255065V2R1Ubuntu 22.04 LTS must use strong authenticators in establishing nonlocal maintenance and diagnostic sessions.
RHEL-09-255050V2R1RHEL 9 must enable the Pluggable Authentication Module (PAM) interface for SSHD.
OL09-00-002344V1R1OL 9 must enable the Pluggable Authentication Module (PAM) interface for SSHD.
WN16-CC-000500V2R10The Windows Remote Management (WinRM) client must not use Basic authentication.
WN16-CC-000520V2R10The Windows Remote Management (WinRM) client must not use Digest authentication.
WN16-CC-000530V2R10The Windows Remote Management (WinRM) service must not use Basic authentication.
SLES-15-010270V1R9The SUSE operating system SSH daemon must be configured to only use Message Authentication Codes (MACs) employing FIPS 140-2 approved cryptographic hash algorithms.
SLES-12-030180V2R13The SUSE operating system SSH daemon must be configured to only use Message Authentication Codes (MACs) employing FIPS 140-2 approved cryptographic hash algorithms.
WN19-CC-000470V2R8Windows Server 2019 Windows Remote Management (WinRM) client must not use Basic authentication.
WN19-CC-000490V2R8Windows Server 2019 Windows Remote Management (WinRM) client must not use Digest authentication.
WN19-CC-000500V2R8Windows Server 2019 Windows Remote Management (WinRM) service must not use Basic authentication.
OL08-00-010290V1R9The OL 8 SSH server must be configured to use only Message Authentication Codes (MACs) employing FIPS 140-2 validated cryptographic hash algorithms.
OL08-00-010291V1R9The OL 8 SSH server must be configured to use only ciphers employing FIPS 140-2 validated cryptographic algorithms.