← Back to Home 📄 View Raw XML

🔍 OSCAP Scan Result - Application server running Ubuntu 24.04 LTS

Target System: ubuntu-app-01.example.com
IP Address: 192.168.1.104
OS: Ubuntu 24.04 LTS
Scan Start: 2026-05-08T22:16:56.232025
Scan End: 2026-05-08T22:23:56.232025

67

Passed

26

Failed

0

Other

Rule Check Results

Rule ID Result Severity Message
accounts_password_pam_unix_enabled PASS MEDIUM -
accounts_root_gid_zero FAIL HIGH Check failed: accounts_root_gid_zero
accounts_umask_etc_bashrc PASS LOW -
accounts_umask_etc_login_defs FAIL LOW Check failed: accounts_umask_etc_login_defs
accounts_umask_etc_profile PASS HIGH -
accounts_umask_root PASS MEDIUM -
ensure_pam_wheel_group_empty PASS HIGH -
ensure_root_access_controlled FAIL LOW Check failed: ensure_root_access_controlled
file_groupowner_sshd_config FAIL HIGH Check failed: file_groupowner_sshd_config
file_owner_sshd_config FAIL HIGH Check failed: file_owner_sshd_config
file_permissions_sshd_config PASS MEDIUM -
file_permissions_sshd_private_key FAIL MEDIUM Check failed: file_permissions_sshd_private_key
file_permissions_sshd_pub_key PASS MEDIUM -
groups_no_zero_gid_except_root PASS MEDIUM -
no_invalid_shell_accounts_unlocked PASS MEDIUM -
no_shelllogin_for_systemaccounts PASS HIGH -
sshd_limit_user_access FAIL MEDIUM Check failed: sshd_limit_user_access
use_pam_wheel_group_for_su PASS LOW -
sshd_use_strong_ciphers FAIL MEDIUM Check failed: sshd_use_strong_ciphers
sshd_use_strong_kex PASS LOW -
sshd_use_strong_macs PASS HIGH -
accounts_password_pam_pwhistory_use_authtok PASS MEDIUM -
accounts_password_pam_unix_authtok PASS MEDIUM -
set_password_hashing_algorithm_logindefs PASS MEDIUM -
set_password_hashing_algorithm_systemauth PASS MEDIUM -
account_disable_post_pw_expiration PASS MEDIUM -
accounts_maximum_age_login_defs PASS MEDIUM -
accounts_minimum_age_login_defs PASS LOW -
accounts_password_last_change_is_in_past FAIL MEDIUM Check failed: accounts_password_last_change_is_in_past
accounts_password_pam_dcredit PASS MEDIUM -
accounts_password_pam_dictcheck PASS LOW -
accounts_password_pam_difok PASS LOW -
accounts_password_pam_enforce_root PASS HIGH -
accounts_password_pam_enforcing PASS LOW -
accounts_password_pam_lcredit PASS MEDIUM -
accounts_password_pam_maxrepeat PASS LOW -
accounts_password_pam_maxsequence PASS HIGH -
accounts_password_pam_minclass PASS MEDIUM -
accounts_password_pam_minlen PASS MEDIUM -
accounts_password_pam_ocredit FAIL MEDIUM Check failed: accounts_password_pam_ocredit
accounts_password_pam_pwhistory_enabled PASS MEDIUM -
accounts_password_pam_pwhistory_enforce_root PASS MEDIUM -
accounts_password_pam_pwhistory_remember PASS LOW -
accounts_password_pam_pwquality_enabled FAIL MEDIUM Check failed: accounts_password_pam_pwquality_enabled
accounts_password_pam_ucredit PASS LOW -
accounts_password_pam_unix_no_remember PASS LOW -
accounts_password_set_max_life_existing PASS HIGH -
accounts_password_set_min_life_existing PASS LOW -
no_empty_passwords_unix PASS MEDIUM -
sshd_disable_empty_passwords PASS LOW -
sshd_disable_gssapi_auth PASS MEDIUM -
sshd_disable_rhosts PASS MEDIUM -
sshd_enable_pam PASS LOW -
accounts_password_warn_age_login_defs FAIL LOW Check failed: accounts_password_warn_age_login_defs
sshd_disable_forwarding PASS LOW -
accounts_tmout FAIL LOW Check failed: accounts_tmout
package_sudo_installed PASS HIGH -
sshd_disable_root_login PASS MEDIUM -
sudo_add_use_pty PASS HIGH -
sudo_remove_no_authenticate FAIL MEDIUM Check failed: sudo_remove_no_authenticate
sudo_require_authentication PASS MEDIUM -
sudo_require_reauthentication PASS HIGH -
accounts_passwords_pam_faillock_deny PASS LOW -
accounts_passwords_pam_faillock_enabled PASS HIGH -
accounts_passwords_pam_faillock_root_unlock_time PASS HIGH -
accounts_passwords_pam_faillock_unlock_time PASS HIGH -
sshd_set_loglevel_info FAIL HIGH Check failed: sshd_set_loglevel_info
sshd_set_max_auth_tries PASS LOW -
sudo_custom_logfile FAIL HIGH Check failed: sudo_custom_logfile
account_automated_provisioning_enabled FAIL MEDIUM Check failed: account_automated_provisioning_enabled
account_temporary_expiration_configured PASS LOW -
account_disable_inactive_accounts PASS HIGH -
sudo_security_function_authorization PASS MEDIUM -
service_nonprivileged_user_execution PASS HIGH -
screen_lock_timeout_configured FAIL HIGH Check failed: screen_lock_timeout_configured
screen_lock_pattern_hiding_enabled FAIL MEDIUM Check failed: screen_lock_pattern_hiding_enabled
sshd_logging_enabled FAIL MEDIUM Check failed: sshd_logging_enabled
auditd_extended_information_enabled FAIL MEDIUM Check failed: auditd_extended_information_enabled
log_analysis_tool_configured PASS LOW -
change_control_documentation_required FAIL MEDIUM Check failed: change_control_documentation_required
service_periodic_review_enabled PASS MEDIUM -
package_update_automation_configured PASS LOW -
intrusion_detection_tool_installed FAIL MEDIUM Check failed: intrusion_detection_tool_installed
encrypted_traffic_inspection_configured FAIL LOW Check failed: encrypted_traffic_inspection_configured
privileged_command_network_restriction FAIL HIGH Check failed: privileged_command_network_restriction
concurrent_session_limit_configured PASS MEDIUM -
auditd_storage_threshold_alert PASS MEDIUM -
auditd_realtime_alerts_enabled PASS HIGH -
centralized_logging_configured PASS MEDIUM -
audit_logs_remote_storage PASS HIGH -
audit_logs_encrypted FAIL MEDIUM Check failed: audit_logs_encrypted
critical_action_signing_enabled PASS LOW -
time_synchronization_configured PASS LOW -