Skip to content

Commit 835f166

Browse files
authored
Merge pull request #14689 from Mab879/fix_14669
Add var_system_crypto_policy to RHEL9 STIG profiles
2 parents 24ce22a + 92fd771 commit 835f166

3 files changed

Lines changed: 3 additions & 0 deletions

File tree

products/rhel9/controls/stig_rhel9.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -592,6 +592,7 @@ controls:
592592
- configure_crypto_policy
593593
- fips_crypto_subpolicy
594594
- fips_custom_stig_sub_policy
595+
- var_system_crypto_policy=fips_stig
595596
status: automated
596597

597598
- id: RHEL-09-231010

tests/data/profile_stability/rhel9/stig.profile

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -540,6 +540,7 @@ var_sshd_disable_compression=no
540540
var_sshd_set_keepalive=1
541541
var_sssd_certificate_verification_digest_function=sha512
542542
var_sudo_timestamp_timeout=always_prompt
543+
var_system_crypto_policy=fips_stig
543544
var_time_service_set_maxpoll=18_hours
544545
var_user_initialization_files_regex=all_dotfiles
545546
wireless_disable_interfaces

tests/data/profile_stability/rhel9/stig_gui.profile

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -538,6 +538,7 @@ var_sshd_disable_compression=no
538538
var_sshd_set_keepalive=1
539539
var_sssd_certificate_verification_digest_function=sha512
540540
var_sudo_timestamp_timeout=always_prompt
541+
var_system_crypto_policy=fips_stig
541542
var_time_service_set_maxpoll=18_hours
542543
var_user_initialization_files_regex=all_dotfiles
543544
wireless_disable_interfaces

0 commit comments

Comments
 (0)