STIGQter STIGQter: STIG Summary: Tri-Lab Operating System Stack (TOSS) 5 Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 Mar 2026:

TOSS 5 must have mail aliases to notify the information system security officer (ISSO) and system administrator (SA) (at a minimum) in the event of an audit processing failure.

DISA Rule

SV-282428r1200264_rule

Vulnerability Number

V-282428

Group Title

SRG-OS-000046-GPOS-00022

Rule Version

TOSS-05-000409

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Edit the aliases map file (by default, /etc/aliases) used by Postfix and configure a root alias (using the user ISSO as an example):

root: ISSO

Update the aliases database with the command:

$ sudo newaliases

Check Contents

Verify TOSS 5 is configured to notify the appropriate interactive users in the event of an audit processing failure.

Find the alias maps in use with the following command:

$ postconf alias_maps

alias_maps = hash:/etc/aliases

Query the Postfix alias maps for an alias for the root user with the following command:

$ postmap -q root hash:/etc/aliases
isso

If an alias is not set, this is a finding.

Vulnerability Number

V-282428

Documentable

False

Rule Version

TOSS-05-000409

Severity Override Guidance

Verify TOSS 5 is configured to notify the appropriate interactive users in the event of an audit processing failure.

Find the alias maps in use with the following command:

$ postconf alias_maps

alias_maps = hash:/etc/aliases

Query the Postfix alias maps for an alias for the root user with the following command:

$ postmap -q root hash:/etc/aliases
isso

If an alias is not set, this is a finding.

Check Content Reference

M

Target Key

5738