File tree Expand file tree Collapse file tree
rhel10/controls/nist_800_53
rhel8/controls/nist_800_53
rhel9/controls/nist_800_53 Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -52,8 +52,11 @@ controls:
5252 title : Incident Handling
5353 levels :
5454 - low
55- rules : []
56- status : pending
55+ rules :
56+ - auditd_audispd_configure_remote_server
57+ - auditd_offload_logs
58+ - service_postfix_enabled
59+ status : automated
5760 - id : ir-4.1
5861 title : Automated Incident Handling Processes
5962 levels :
@@ -124,8 +127,14 @@ controls:
124127 title : Incident Monitoring
125128 levels :
126129 - low
127- rules : []
128- status : pending
130+ rules :
131+ - audit_rules_file_deletion_events
132+ - audit_rules_file_deletion_events_rename
133+ - audit_rules_file_deletion_events_renameat
134+ - audit_rules_file_deletion_events_rmdir
135+ - audit_rules_file_deletion_events_unlink
136+ - audit_rules_file_deletion_events_unlinkat
137+ status : automated
129138 - id : ir-5.1
130139 title : Automated Tracking, Data Collection, and Analysis
131140 levels :
Original file line number Diff line number Diff line change @@ -48,8 +48,17 @@ controls:
4848 title : Vulnerability Monitoring and Scanning
4949 levels :
5050 - low
51- rules : []
52- status : pending
51+ rules :
52+ - kernel_module_cramfs_disabled
53+ - kernel_module_dccp_disabled
54+ - kernel_module_freevxfs_disabled
55+ - kernel_module_hfs_disabled
56+ - kernel_module_hfsplus_disabled
57+ - kernel_module_jffs2_disabled
58+ - kernel_module_rds_disabled
59+ - kernel_module_sctp_disabled
60+ - kernel_module_tipc_disabled
61+ status : automated
5362 - id : ra-5.1
5463 title : Update Tool Capability
5564 rules : []
Original file line number Diff line number Diff line change @@ -52,8 +52,11 @@ controls:
5252 title : Incident Handling
5353 levels :
5454 - low
55- rules : []
56- status : pending
55+ rules :
56+ - auditd_audispd_configure_remote_server
57+ - auditd_offload_logs
58+ - service_postfix_enabled
59+ status : automated
5760 - id : ir-4.1
5861 title : Automated Incident Handling Processes
5962 levels :
@@ -124,8 +127,14 @@ controls:
124127 title : Incident Monitoring
125128 levels :
126129 - low
127- rules : []
128- status : pending
130+ rules :
131+ - audit_rules_file_deletion_events
132+ - audit_rules_file_deletion_events_rename
133+ - audit_rules_file_deletion_events_renameat
134+ - audit_rules_file_deletion_events_rmdir
135+ - audit_rules_file_deletion_events_unlink
136+ - audit_rules_file_deletion_events_unlinkat
137+ status : automated
129138 - id : ir-5.1
130139 title : Automated Tracking, Data Collection, and Analysis
131140 levels :
Original file line number Diff line number Diff line change @@ -48,8 +48,17 @@ controls:
4848 title : Vulnerability Monitoring and Scanning
4949 levels :
5050 - low
51- rules : []
52- status : pending
51+ rules :
52+ - kernel_module_cramfs_disabled
53+ - kernel_module_dccp_disabled
54+ - kernel_module_freevxfs_disabled
55+ - kernel_module_hfs_disabled
56+ - kernel_module_hfsplus_disabled
57+ - kernel_module_jffs2_disabled
58+ - kernel_module_rds_disabled
59+ - kernel_module_sctp_disabled
60+ - kernel_module_tipc_disabled
61+ status : automated
5362 - id : ra-5.1
5463 title : Update Tool Capability
5564 rules : []
Original file line number Diff line number Diff line change @@ -52,8 +52,11 @@ controls:
5252 title : Incident Handling
5353 levels :
5454 - low
55- rules : []
56- status : pending
55+ rules :
56+ - auditd_audispd_configure_remote_server
57+ - auditd_offload_logs
58+ - service_postfix_enabled
59+ status : automated
5760 - id : ir-4.1
5861 title : Automated Incident Handling Processes
5962 levels :
@@ -124,8 +127,14 @@ controls:
124127 title : Incident Monitoring
125128 levels :
126129 - low
127- rules : []
128- status : pending
130+ rules :
131+ - audit_rules_file_deletion_events
132+ - audit_rules_file_deletion_events_rename
133+ - audit_rules_file_deletion_events_renameat
134+ - audit_rules_file_deletion_events_rmdir
135+ - audit_rules_file_deletion_events_unlink
136+ - audit_rules_file_deletion_events_unlinkat
137+ status : automated
129138 - id : ir-5.1
130139 title : Automated Tracking, Data Collection, and Analysis
131140 levels :
Original file line number Diff line number Diff line change @@ -48,8 +48,17 @@ controls:
4848 title : Vulnerability Monitoring and Scanning
4949 levels :
5050 - low
51- rules : []
52- status : pending
51+ rules :
52+ - kernel_module_cramfs_disabled
53+ - kernel_module_dccp_disabled
54+ - kernel_module_freevxfs_disabled
55+ - kernel_module_hfs_disabled
56+ - kernel_module_hfsplus_disabled
57+ - kernel_module_jffs2_disabled
58+ - kernel_module_rds_disabled
59+ - kernel_module_sctp_disabled
60+ - kernel_module_tipc_disabled
61+ status : automated
5362 - id : ra-5.1
5463 title : Update Tool Capability
5564 rules : []
You can’t perform that action at this time.
0 commit comments