OL 8 must use a separate file system for /var/tmp.

STIG ID: OL08-00-010544  |  SRG: SRG-OS-000480-GPOS-00227 |  Severity: medium |  CCI: CCI-000366 |  Vulnerability Id: V-248612 | 

Vulnerability Discussion

The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.

Check

Verify that a separate file system has been created for "/var/tmp".

Check that a file system has been created for "/var/tmp" with the following command:

$ sudo grep /var/tmp /etc/fstab

/dev/mapper/... /var/tmp xfs defaults,nodev,noexec,nosuid 0 0

If a separate entry for "/var/tmp" is not in use, this is a finding.

Fix

Migrate the "/var/tmp" path onto a separate file system.