Properties in the custom DISA property class


The following DISA properties are included in the custom DISA property class. Tailor these property values to the unique needs of your local system.

Property

Description

Default value

AIX_Audit_bin1

Path to the /audit/bin1 directory, defined in the bin stanza of
/etc/security/audit/config

AIX_Audit_Directory/bin1

AIX_Audit_bin2

Path to the /audit/bin2 directory, defined in the bin stanza of
/etc/security/audit/config

AIX_Audit_Directory/bin2

AIX_Audit_Directory

Path to the /audit directory, defined in the bin stanza of
/etc/security/audit/config"

/audit

AIX_Audit_trail

Path to the /audit/trail directory, defined in the bin stanza of
/etc/security/audit/config

AIX_Audit_Directory/trail

Unix Application Accounts

UNIX application accounts for DISA.
Separate multiple account names with commas.

smmsp,CBIF,JDISS,SSO,SM,gccsrv,gtnsmint,
irc,Imadmin,netadmin,news,sm,GCCS,ingres,
apache,oracle,oracle7,oracle8,oracle9,
Oracle9i,informix,news,sybase,tivoli,mqm,
www,ftp,tftp,hpdb,gccs,gcss,COE,esm,
ita,sshd,invscout,ov,openview,
predmail,snmp,smtp,xfs,rpm,gdm

Unix Application Groups

UNIX application groups for DISA.
Separate multiple group names with commas.

smmsp,CBIF,JDISS,SSO,SM,gccsrv,gtnsmint,
irc,Imadmin,netadmin,news,sm,GCCS,ingres,
apache,oracle,oracle7,oracle8,oracle9,
Oracle9i,informix,news,sybase,tivoli,mqm,
www,ftp,tftp,hpdb,gccs,gcss,COE,esm,ita,
sshd,invscout,ov,openview,predmail,snmp,
smtp,xfs,rpm,gdm

Unix Services

UNIX services for DISA.
Separate multiple names of services with commas.

recserv,shell,http,imap,comsat,ssh,klogin,
kshell,ita,esm,ncpm,tivoli,dtspc,admind,
chargen,echo,news,nntp,etherstatd,fingerd,
ftpd,ICQ,server,identd,nit,sysstat,nsed,
nsemntd,pfilt,portd,quak,ed,rexd,
rexecd,rje_mapper,rlogind,rpc_3270,rpcbind,
rpc_alias,rpc_database,rpc_keyserv,
rpc_sched,rqu,otad,rsh,rstatd,rusersd,
selectd,serverd,showfhd,sprayd,statmon,
sunlink_mapper,talkd,telnetd,tfsd,tf,
tpd,timed,ttdb,ugidd,uucpd,pop,pop3,
sendmail,walld

Unix System Accounts

UNIX system accounts for DISA.
Separate multiple account names with commas.

root,daemon,bin,sys,adm,smtp,uucp,
nuucp,listen,lpd,lp,ingres,oracle,
oracle7,oracle8,oracle9,oracle9i,informix,
news,nobody,nobody4,noaccess,
sybase,tivoli,www,ftp,tftp,hpdb,sshd,
invscout,gccs,secm,an,sysadmin,install,
staff,COE,tracker,predmail,snmp,inews,
smmsp,sm,spmadmin,share,
BIF,GCCS,JDISS,SA,SSO,SM,
ftp,gccsrv,gtnsmint,irc,Imadmin,imadmin,
netadmin,oradba,halt,mail,rpm,
vcsa,nscd,rpc,rpcuser,mailnull,
pcap,xfs,ntp,gdm,sync,shutdown,halt,
operator,gopher,nfsnobody,dbus,
haldaemon,netdump,webalizer,pvm,
mysql,mailman,dovecot,cyrus,amanda,
pegasus,HPSMH,hpsmh,
webadmind,webadmin,webservd,avahi,
beagleidx,hsqldb,postfix

USERNAME_FOR_
 GRUB_PASSWORD

The name of a user whose system password hash will be used
as the grub password on Linux

root

WIN_APP_ACCOUNTS

Windows application accounts for DISA.
Separate multiple account names with commas.

Administrator,mssql,oracle,aspnet

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*