STIGQter STIGQter: STIG Summary: Red Hat Enterprise Linux 8 Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 23 Apr 2021:

RHEL 8 must accept Personal Identity Verification (PIV) credentials.

DISA Rule

SV-230275r627750_rule

Vulnerability Number

V-230275

Group Title

SRG-OS-000376-GPOS-00161

Rule Version

RHEL-08-010410

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure RHEL 8 to accept PIV credentials.

Install the "opensc" package using the following command:

$ sudo yum install opensc

Check Contents

Verify RHEL 8 accepts PIV credentials.

Check that the "opensc" package is installed on the system with the following command:

$ sudo yum list installed opensc

opensc.x86_64 0.19.0-5.el8 @anaconda

Check that "opensc" accepts PIV cards with the following command:

$ sudo opensc-tool --list-drivers | grep -i piv

PIV-II Personal Identity Verification Card

If the "opensc" package is not installed and the "opensc-tool" driver list does not include "PIV-II", this is a finding.

Vulnerability Number

V-230275

Documentable

False

Rule Version

RHEL-08-010410

Severity Override Guidance

Verify RHEL 8 accepts PIV credentials.

Check that the "opensc" package is installed on the system with the following command:

$ sudo yum list installed opensc

opensc.x86_64 0.19.0-5.el8 @anaconda

Check that "opensc" accepts PIV cards with the following command:

$ sudo opensc-tool --list-drivers | grep -i piv

PIV-II Personal Identity Verification Card

If the "opensc" package is not installed and the "opensc-tool" driver list does not include "PIV-II", this is a finding.

Check Content Reference

M

Target Key

2921

Comments