All TOSS 5 networked systems must have and implement SSH to protect the confidentiality and integrity of transmitted and received information, as well as information during preparation for transmission.
DISA Rule
SV-282607r1200801_rule
Vulnerability Number
V-282607
Group Title
SRG-OS-000423-GPOS-00187
Rule Version
TOSS-05-000234
Severity
CAT II
CCI(s)
- CCI-002418 - Protect the confidentiality and/or integrity of transmitted information.
- CCI-002421 - Implement cryptographic mechanisms to prevent unauthorized disclosure of information and/or detect changes to information during transmission.
- CCI-002420 - Maintain the confidentiality and/or integrity of information during preparation for transmission.
- CCI-002422 - Maintain the confidentiality and/or integrity of information during reception.
Weight
10
Fix Recommendation
Enable the "sshd" service using the following command:
$ systemctl enable --now sshd
Check Contents
Verify "sshd" is active using the following command:
$ systemctl is-active sshd
active
If the "sshd" service is not active, this is a finding.
Vulnerability Number
V-282607
Documentable
False
Rule Version
TOSS-05-000234
Severity Override Guidance
Verify "sshd" is active using the following command:
$ systemctl is-active sshd
active
If the "sshd" service is not active, this is a finding.
Check Content Reference
M
Target Key
5738