All RHEL 9 networked systems must have and implement SSH to protect the confidentiality and integrity of transmitted and received information, as well as information during preparation for transmission.
DISA Rule
SV-257979r958908_rule
Vulnerability Number
V-257979
Group Title
SRG-OS-000423-GPOS-00187
Rule Version
RHEL-09-255015
Severity
CAT II
CCI(s)
- CCI-002418 - Protect the confidentiality and/or integrity of transmitted information.
- CCI-002420 - Maintain the confidentiality and/or integrity of information during preparation for transmission.
- CCI-002421 - Implement cryptographic mechanisms to prevent unauthorized disclosure of information and/or detect changes to information during transmission.
- CCI-002422 - Maintain the confidentiality and/or integrity of information during reception.
Weight
10
Fix Recommendation
To enable the sshd service run the following command:
$ systemctl enable --now sshd
Check Contents
Verify that "sshd" is active with the following command:
$ systemctl is-active sshd
active
If the "sshd" service is not active, this is a finding.
Vulnerability Number
V-257979
Documentable
False
Rule Version
RHEL-09-255015
Severity Override Guidance
Verify that "sshd" is active with the following command:
$ systemctl is-active sshd
active
If the "sshd" service is not active, this is a finding.
Check Content Reference
M
Target Key
5551