diff --git a/controls/stig_slmicro5.yml b/controls/stig_slmicro5.yml index 5204e7a2502..68e6cc4bc9a 100644 --- a/controls/stig_slmicro5.yml +++ b/controls/stig_slmicro5.yml @@ -1021,9 +1021,12 @@ controls: levels: - medium title: SLEM 5 must not allow passwords to be reused for a minimum of five generations. - rules: [] - status: pending - + rules: + - accounts_password_pam_pwhistory_remember + - var_password_pam_remember_control_flag=requisite + - var_password_pam_remember=5 + status: automated + - id: SLEM-05-611050 levels: - medium diff --git a/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_pwhistory_remember/rule.yml b/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_pwhistory_remember/rule.yml index c46b7bcffeb..afeea9dbe62 100644 --- a/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_pwhistory_remember/rule.yml +++ b/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_pwhistory_remember/rule.yml @@ -21,6 +21,7 @@ severity: medium identifiers: cce@sle12: CCE-83173-5 cce@sle15: CCE-91398-8 + cce@slmicro5: CCE-94082-5 references: cis@sle12: 5.3.3 diff --git a/shared/references/cce-slmicro5-avail.txt b/shared/references/cce-slmicro5-avail.txt index 4391fa32348..4e71dea50b2 100644 --- a/shared/references/cce-slmicro5-avail.txt +++ b/shared/references/cce-slmicro5-avail.txt @@ -444,7 +444,6 @@ CCE-94078-3 CCE-94079-1 CCE-94080-9 CCE-94081-7 -CCE-94082-5 CCE-94083-3 CCE-94084-1 CCE-94085-8