STIGUI
V-282592CAT II — Medium severitySV-282592r1262432_rule

TOSS 5 must have the opensc package installed.

Rule version TOSS-05-000363 · STIG v1 · 2026-08-20

Discussion

The use of PIV credentials facilitates standardization and reduces the risk of unauthorized access.

The DoW has mandated the use of the common access card (CAC) to support identity management and personal authentication for systems covered under Homeland Security Presidential Directive (HSPD) 12, as well as making the CAC a primary component of layered protection for national security systems.

Satisfies: SRG-OS-000375-GPOS-00160, SRG-OS-000376-GPOS-00161, SRG-OS-000377-GPOS-00162

Check

Verify TOSS 5 has the "opensc" package installed using the following command:

$ sudo dnf list --installed opensc

Example output:

opensc.x86_64 0.22.0-2.el9

If the "opensc" package is not installed, this is a finding.

Fix

Install the "opensc" package using the following command:

$ sudo dnf install opensc

Identifiers

Group ID
V-282592
Group title
SRG-OS-000375-GPOS-00160
Rule ID
SV-282592r1262432_rule
Check ID
C-87153r1200754_chk
Fix ID
F-87058r1200755_fix