SRG-OS-000191-GPOS-00080 Controls

STIG IDVersionTitleProduct
RHEL-08-010001V1R6The RHEL 8 operating system must implement the Endpoint Security for Linux Threat Prevention tool.
SLES-15-010001V1R4The SUSE operating system must implement the Endpoint Security for Linux Threat Prevention tool.
WN19-00-000290V3R1Windows Server 2019 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where Endpoint Security Solution (ESS) is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).
UBTU-18-010021V2R12The Ubuntu operating system must deploy Endpoint Security for Linux Threat Prevention (ENSLTP).
UBTU-20-010415V1R6The Ubuntu operating system must deploy Endpoint Security for Linux Threat Prevention (ENSLTP).
APPL-14-000015V1R1The macOS system must employ automated mechanisms to determine the state of system components.
APPL-13-000015V1R5The macOS system must use an Endpoint Security Solution (ESS) and implement all DOD required modules.
OL07-00-020019V2R5The Oracle Linux operating system must implement the Endpoint Security for Linux Threat Prevention tool.
SLES-12-010599V2R5The SUSE operating system must implement the Endpoint Security for Linux Threat Prevention tool.
OL08-00-010001V1R6The OL 8 operating system must implement the Endpoint Security for Linux Threat Prevention tool.
UBTU-22-211010V1R1Ubuntu 22.04 LTS must deploy an Endpoint Security Solution.
WN11-00-000025V1R6Windows 11 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where ESS is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).
RHEL-09-211025V1R1RHEL 9 must implement the Endpoint Security for Linux Threat Prevention tool.
WN10-00-000025V3R1Windows 10 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: Continuously, where ESS is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).
WN16-00-000320V2R9Windows Server 2016 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where Endpoint Security Solution (ESS) is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).
WN22-00-000290V2R5Windows Server 2022 must employ automated mechanisms to determine the state of system components with regard to flaw remediation using the following frequency: continuously, where Endpoint Security Solution (ESS) is used; 30 days, for any additional internal network scans not covered by ESS; and annually, for external scans by Computer Network Defense Service Provider (CNDSP).