RHEL 10 must have the packages required for encrypting off-loaded audit logs installed.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-280992SRG-OS-000120-GPOS-00061RHEL-10-200650SV-280992r1195379_rule2026-03-111

Description

The "rsyslog-gnutls" package provides Transport Layer Security (TLS) support for the rsyslog daemon, which enables secure remote logging.

ℹ️ Check

Verify RHEL 10 has the "rsyslog-gnutls" package installed with the following command: $ sudo dnf list --installed rsyslog-gnutls Installed Packages rsyslog-gnutls.x86_64 8.2412.0-1.el10 @AppStream If the "rsyslog-gnutls" package is not installed, this is a finding.

✔️ Fix

Configure RHEL 10 to have the "rsyslog-gnutls" package installed with the following command: $ sudo dnf -y install rsyslog-gnutls