SV-230289r627750_rule
V-230289
SRG-OS-000480-GPOS-00227
RHEL-08-010510
CAT II
10
Uncomment the "Compression" keyword in "/etc/ssh/sshd_config" (this file may be named differently or be in a different location if using a version of SSH that is provided by a third-party vendor) on the system and set the value to "no":
Compression no
The SSH service must be restarted for changes to take effect.
Verify the SSH daemon performs compression after a user successfully authenticates with the following command:
$ sudo grep -i compression /etc/ssh/sshd_config
Compression no
If the "Compression" keyword is set to "yes", "delayed", is missing, or the returned line is commented out, this is a finding.
V-230289
False
RHEL-08-010510
Verify the SSH daemon performs compression after a user successfully authenticates with the following command:
$ sudo grep -i compression /etc/ssh/sshd_config
Compression no
If the "Compression" keyword is set to "yes", "delayed", is missing, or the returned line is commented out, this is a finding.
M
2921