Check: GEN000100
Solaris 10 SPARC STIG:
GEN000100
(in versions v2 r3 through v2 r1)
Title
The operating system must be a supported release. (Cat I impact)
Discussion
An operating system release is considered supported if the vendor continues to provide security patches for the product. With an unsupported release, it will not be possible to resolve security issues discovered in the system software.
Check Content
# uname -a Oracle has committed to indefinite "sustaining support" for recent Solaris operating system releases. Verify proof of purchase of support from Oracle. If the release is not supported, this is a finding. Severity Override Guidance: If an extended support agreement provides security patches for the unsupported product is procured from the vendor, this finding may be downgraded to a CAT III.
Fix Text
Upgrade to a supported version of the operating system.
Additional Identifiers
Rule ID: SV-226430r603265_rule
Vulnerability ID: V-226430
Group Title: SRG-OS-000480
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
Implement the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |