STIGQter STIGQter: STIG Summary: SUSE Linux Enterprise Micro (SLEM) 5 Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 01 Apr 2026:

SLEM 5 audit event multiplexor must be configured to use Kerberos.

DISA Rule

SV-261421r996672_rule

Vulnerability Number

V-261421

Group Title

SRG-OS-000342-GPOS-00133

Rule Version

SLEM-05-653065

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure SLEM 5 audit event multiplexor to use Kerberos.

Add or modify the following line in the "/etc/audisp/audisp-remote.conf" file:

enable_krb5 = yes

Check Contents

Determine if SLEM 5 audit event multiplexor is configured to use Kerberos by running the following command:

> sudo grep enable_krb5 /etc/audisp/audisp-remote.conf
enable_krb5 = yes

If "enable_krb5" is not set to "yes", or is commented out, this is a finding.

Vulnerability Number

V-261421

Documentable

False

Rule Version

SLEM-05-653065

Severity Override Guidance

Determine if SLEM 5 audit event multiplexor is configured to use Kerberos by running the following command:

> sudo grep enable_krb5 /etc/audisp/audisp-remote.conf
enable_krb5 = yes

If "enable_krb5" is not set to "yes", or is commented out, this is a finding.

Check Content Reference

M

Target Key

5596