STIGQter STIGQter: STIG Summary: Oracle Linux 6 Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 23 Apr 2021:

The system must provide VPN connectivity for communications over untrusted networks.

DISA Rule

SV-219580r603263_rule

Vulnerability Number

V-219580

Group Title

SRG-OS-000480

Rule Version

OL6-00-000321

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

The Libreswan package provides an implementation of IPsec and IKE, which permits the creation of secure tunnels over untrusted networks.

The "libreswan" package can be installed with the following command:

# yum install libreswan

Check Contents

If the system does not communicate over untrusted networks, this is not applicable.

Run the following command to determine if the "libreswan" package is installed:

# rpm -q libreswan

If the package is not installed, this is a finding.

Vulnerability Number

V-219580

Documentable

False

Rule Version

OL6-00-000321

Severity Override Guidance

If the system does not communicate over untrusted networks, this is not applicable.

Run the following command to determine if the "libreswan" package is installed:

# rpm -q libreswan

If the package is not installed, this is a finding.

Check Content Reference

M

Target Key

2928

Comments