OL 9 must have the packages required for encrypting offloaded audit logs installed.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-271510OL09-00-000355SV-271510r1091242_ruleCCI-000803medium
Description
The rsyslog-gnutls package provides Transport Layer Security (TLS) support for the rsyslog daemon, which enables secure remote logging.
STIGDate
Oracle Linux 9 Security Technical Implementation Guide2025-05-08

Details

Check Text (C-271510r1091242_chk)

Verify that OL 9 has the rsyslog-gnutls package installed with the following command: $ dnf list --installed rsyslog-gnutls Installed Packages rsyslog-gnutls.x86_64 8.2310.0-4.el9 @AppStream If the rsyslog-gnutls package is not installed, this is a finding.

Fix Text (F-75467r1091241_fix)

Install the rsyslog-gnutls package with the following command: $ sudo dnf install -y rsyslog-gnutls