Check: AZLX-23-001095
Amazon Linux 2023 STIG:
AZLX-23-001095
(in version v1 r1)
Title
Amazon Linux 2023 must have the s-nail package installed. (Cat II impact)
Discussion
The "s-nail" package provides the mail command required to allow sending email notifications of unauthorized configuration changes to designated personnel.
Check Content
Verify Amazon Linux 2023 has the "s-nail" package is installed on the system with the following command: $ dnf list --installed s-nail Installed Packages s-nail.x86_64 14.9.24-6.amzn2023 @amazonlinux If the "s-nail" package is not installed, this is a finding.
Fix Text
Configure Amazon Linux 2023 to have the s-nail package installed with the following command: $ sudo dnf install -y s-nail
Additional Identifiers
Rule ID: SV-274031r1120081_rule
Vulnerability ID: V-274031
Group Title: SRG-OS-000363-GPOS-00150
Expert Comments
CCIs
| Number | Definition |
|---|---|
| CCI-001744 |
Implement organization-defined security responses automatically if baseline configurations are changed in an unauthorized manner. |
Controls
| Number | Title |
|---|---|
| CM-3(5) |
Automated Security Response |