SRG-OS-000396-GPOS-00176 Controls

STIG ID Version Title Product
RHEL-09-672010 V2R2 RHEL 9 must have the crypto-policies package installed.
RHEL-09-672020 V2R2 RHEL 9 crypto policy must not be overridden.
RHEL-09-672045 V2R2 RHEL 9 must implement a systemwide encryption policy.
SLES-15-010510 V2R2 FIPS 140-2 mode must be enabled on the SUSE operating system.
UBTU-20-010442 V2R1 The Ubuntu operating system must implement NIST FIPS-validated cryptography to protect classified information and for the following: To provision digital signatures, to generate cryptographic hashes, and to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.
UBTU-22-671010 V2R2 Ubuntu 22.04 LTS must implement NIST FIPS-validated cryptography to protect classified information and for the following: To provision digital signatures, to generate cryptographic hashes, and to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.
WN16-DC-000140 V2R9 Separate, NSA-approved (Type 1) cryptography must be used to protect the directory data in transit for directory service implementations at a classified confidentiality level when replication data traverses a network cleared to a lower level than the data.
WN19-DC-000140 V3R2 Windows Server 2019 must use separate, NSA-approved (Type 1) cryptography to protect the directory data in transit for directory service implementations at a classified confidentiality level when replication data traverses a network cleared to a lower level than the data.
WN22-DC-000140 V2R2 Windows Server 2022 must use separate, NSA-approved (Type 1) cryptography to protect the directory data in transit for directory service implementations at a classified confidentiality level when replication data traverses a network cleared to a lower level than the data.