STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 5 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← CM-5 (3) — Access Restrictions for Change

CCI-000351

Definition

The organization defines critical software programs that the information system will prevent from being installed if such software programs are not signed with a recognized and approved certificate.

Parent Control

CM-5 (3)Access Restrictions for ChangeConfiguration Management

Linked STIG Checks (1)

V-22588CAT IIIThe system package management tool must cryptographically verify the authenticity of software packages during installation.SUSE Linux Enterprise Server v11 for System z Security Technical Implementation Guide