CA-ACF2 RULEOPTS GSO record values must be set to the values specified.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
|---|---|---|---|---|---|---|
| medium | V-223475 | SRG-OS-000480-GPOS-00227 | ACF2-ES-000570 | SV-223475r991589_rule | 2026-03-09 | 9 |
Description
Configuring the operating system to implement organization-wide security implementation guides and security checklists ensures compliance with federal standards and establishes a common security baseline across DoD that reflects the most restrictive security posture consistent with operational requirements.
ℹ️ Check
From the ACF Command enter:
SET CONTROL(GSO)
LIST RULEOPTS
If the following options are defined, this is not a finding.
NO$NOSORT
CENTRAL
CHANGE
DECOMP(AUDIT SECURITY) | DECOMP(AUDIT) | DECOMP(SECURITY)
The other RULEOPTS values should be assigned carefully as they affect the Rules and Infostorage databases.
✔️ Fix
Configure the GSO RULEOPTS record values to conform to the following requirements.
NO$NOSORT
CENTRAL
CHANGE
DECOMP(AUDIT SECURITY) | DECOMP(AUDIT) | DECOMP(SECURITY)
The other RULEOPTS values should be assigned carefully as they affect the Rules and Infostorage databases.
Example:
SET C(GSO)
INSERT RULEOPTS NO$NOSORT CENTRAL CHANGE NOCOMPDYN DECOMP(AUDIT SECURITY)
F ACF2,REFRESH(RULEOPTS)