Home > Storage > PowerScale (Isilon) > Product Documentation > Security and Compliance > Dell PowerScale OneFS: Security Considerations > Assessment areas
The OneFS STIG security profile accounts for controls from several STIGs and SRGs Security profiles. They are preconfigured profiles that may not be edited.
For OneFS 9.4.0.0 and earlier versions, the STIG and SRG evaluation was performed in 2013, and the STIG security profile addresses those findings. The following table lists the referenced STIG or SRG for each security profile assessment area.
Security profile assessment area | Referenced STIG or SRG |
Operating system | UNIX Manual SRG – Version 1, Release 3* |
Apache Webserver | Apache 2.2 STIG UNIX – Version 1, Release 4 |
Webserver | Web Server SRG – Version 1, Release 1 |
Application security and development | Application Security and Development STIG – Version 3, Release 8 |
Application server | Application Server SRG - Version 1, Release 1 |
Network | Network Devices STIG - Version 8, Release 17 |
Sharing peripherals across the network | Storage Area Network STIG - Version 2, Release 2 |
Database | Database SRG - Version 1, Release 1 |
Enclave | Enclave STIG - Version 4, Release 5 |
Removable storage | Removable Storage STIG - Version 1, Release 2 |
Remote access server | RAS Remote Access Server STIG - Version 2, Release 7 |
*The Operating System STIG is dated April 26, 2013, and was applicable during the hardening feature design but has since been retired in favor of an operating-system-agnostic version.
For OneFS 9.5.0.0 and later, the STIG and SRG evaluation was performed in 2022, and the STIG security profile addresses those findings. The following table lists the referenced STIG or SRG for each security profile assessment area.
Security profile assessment area | Referenced STIG or SRG |
Operating system | General Purpose Operating System SRG Version 2, Release 4 |
Apache Webserver | Apache 2.4 UNIS Server STIG – Version 2, Release 4 |
Webserver | Web Server SRG – Version 2, Release 3 |
Network Device Management | Network Device Management SRG - Version 4, Release 1 Network Infrastructure Policy STIG Version 10, Release 3 |