STIGQter STIGQter: STIG Summary: Red Hat Enterprise Linux 10 Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

RHEL 10 must not have the "gssproxy" package installed.

DISA Rule

SV-280945r1184750_rule

Vulnerability Number

V-280945

Group Title

SRG-OS-000095-GPOS-00049

Rule Version

RHEL-10-200030

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure RHEL 10 to not have the "gssproxy" package installed with the following command:

$ sudo dnf -y remove gssproxy

Check Contents

Note: If Network File System (NFS) mounts are authorized and in use on the system, this control is not applicable.

Verify RHEL 10 does not have the "gssproxy" package installed with the following command:

$ sudo dnf list --installed gssproxy
Error: No matching Packages to list

If the "gssproxy" package is installed and is not documented with the information system security officer as an operational requirement, this is a finding.

Vulnerability Number

V-280945

Documentable

False

Rule Version

RHEL-10-200030

Severity Override Guidance

Note: If Network File System (NFS) mounts are authorized and in use on the system, this control is not applicable.

Verify RHEL 10 does not have the "gssproxy" package installed with the following command:

$ sudo dnf list --installed gssproxy
Error: No matching Packages to list

If the "gssproxy" package is installed and is not documented with the information system security officer as an operational requirement, this is a finding.

Check Content Reference

M

Target Key

5733