A separate RHEL 8 filesystem must be used for the /tmp directory.

STIG ID: RHEL-08-010543  |  SRG: SRG-OS-000480-GPOS-00227 |  Severity: medium |  CCI: CCI-000366 |  Vulnerability Id: V-230295 | 

Vulnerability Discussion

The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.

Check

Verify that a separate file system/partition has been created for non-privileged local interactive user home directories.

$ sudo grep /tmp /etc/fstab

/dev/mapper/rhel-tmp /tmp xfs defaults,nodev,nosuid,noexec 0 0

If a separate entry for the file system/partition "/tmp" does not exist, this is a finding.

Fix

Migrate the "/tmp" directory onto a separate file system/partition.