STIGQter STIGQter: STIG Summary: General Purpose Operating System Security Requirements Guide Version: 3 Release: 3 Benchmark Date: 28 Oct 2025:

The operating system must employ a deny-all, permit-by-exception policy to allow the execution of authorized software programs.

DISA Rule

SV-203722r958808_rule

Vulnerability Number

V-203722

Group Title

SRG-OS-000370

Rule Version

SRG-OS-000370-GPOS-00155

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the operating system to employ a deny-all, permit-by-exception policy to allow the execution of authorized software programs.

Check Contents

Verify the operating system employs a deny-all, permit-by-exception policy to allow the execution of authorized software programs. If it does not, this is a finding.

Vulnerability Number

V-203722

Documentable

False

Rule Version

SRG-OS-000370-GPOS-00155

Severity Override Guidance

Verify the operating system employs a deny-all, permit-by-exception policy to allow the execution of authorized software programs. If it does not, this is a finding.

Check Content Reference

M

Target Key

2895