STIGQter STIGQter: STIG Summary: Amazon Linux 2023 Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 01 Jul 2026:

Amazon Linux 2023 must use a Linux Security Module configured to enforce limits on system services.

DISA Rule

SV-274153r1120713_rule

Vulnerability Number

V-274153

Group Title

SRG-OS-000134-GPOS-00068

Rule Version

AZLX-23-002450

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure Amazon Linux 2023 to verify correct operation of security functions.

Edit the file "/etc/selinux/config" and add or modify the following line:

SELINUX=enforcing

A reboot is required for the changes to take effect.

Check Contents

Verify Amazon Linux 2023 verifies the correct operation of security functions through the use of SELinux with the following command:

$ getenforce
Enforcing

If SELINUX is not set to "Enforcing", this is a finding.

Vulnerability Number

V-274153

Documentable

False

Rule Version

AZLX-23-002450

Severity Override Guidance

Verify Amazon Linux 2023 verifies the correct operation of security functions through the use of SELinux with the following command:

$ getenforce
Enforcing

If SELINUX is not set to "Enforcing", this is a finding.

Check Content Reference

M

Target Key

5700