CCI-000382 requires configuring the OS to restrict the use of organization-defined functions, services, ports, and/or protocols. This is discussed in principle-minimize-software.
Signed-off-by: Willy Santos wsantos@redhat.com --- rhel6/src/input/intro/intro.xml | 2 +- 1 files changed, 1 insertions(+), 1 deletions(-)
diff --git a/rhel6/src/input/intro/intro.xml b/rhel6/src/input/intro/intro.xml index 09537c2..1b67717 100644 --- a/rhel6/src/input/intro/intro.xml +++ b/rhel6/src/input/intro/intro.xml @@ -57,7 +57,7 @@ attack code to be run undetected. The number of software packages installed on a system can almost always be significantly pruned to include only the software for which there is an environmental or operational need. </description> -<ref disa="381" /> +<ref disa="381,382" /> </Group>
<Group id="principle-separate-servers">