SRG-APP-000131 Controls

STIG IDVersionTitleProduct
SRG-APP-000131-CTR-000280V2R4The container platform must be built from verified packages.Security Requirements Guide - Container Platform
SRG-APP-000131-CTR-000285V2R4The container platform must verify container images.Security Requirements Guide - Container Platform
SRG-APP-000131-MFP-000189V3R4The Mainframe Product must prevent the installation of patches, service packs, or application components without verification that the software component has been digitally signed using a certificate that is recognized and approved by the organization.Security Requirements Guide - Mainframe Product
SRG-APP-000131-WSR-000051V4R4All web server files must be verified for their integrity (e.g., checksums and hashes) before becoming part of the production web server.Security Requirements Guide - Web Server
SRG-APP-000131-WSR-000073V4R4Expansion modules must be fully reviewed, tested, and signed before they can exist on a production web server.Security Requirements Guide - Web Server