SV-230253r627750_rule
V-230253
SRG-OS-000480-GPOS-00227
RHEL-08-010292
CAT III
10
Configure the operating system SSH server to use strong entropy.
Add or modify the following line in the "/etc/sysconfig/sshd" file.
SSH_USE_STRONG_RNG=32
The SSH service must be restarted for changes to take effect.
Verify the operating system SSH server uses strong entropy with the following command:
Note: If the operating system is RHEL versions 8.0 or 8.1, this requirement is not applicable.
$ sudo grep -i ssh_use_strong_rng /etc/sysconfig/sshd
SSH_USE_STRONG_RNG=32
If the "SSH_USE_STRONG_RNG" line does not equal "32", is commented out or missing, this is a finding.
V-230253
False
RHEL-08-010292
Verify the operating system SSH server uses strong entropy with the following command:
Note: If the operating system is RHEL versions 8.0 or 8.1, this requirement is not applicable.
$ sudo grep -i ssh_use_strong_rng /etc/sysconfig/sshd
SSH_USE_STRONG_RNG=32
If the "SSH_USE_STRONG_RNG" line does not equal "32", is commented out or missing, this is a finding.
M
2921