Enabling additional STIG hardening

Last Updated : Jun 10, 2026 |

About this task

The Security Technical Implementation Guides (STIGs) are the requirements that, when implemented, enhance application security and monitoring capabilities. By default, Avaya Aura® Web Gateway enables essential STIG hardening options during the system layer installation or upgrade. These default settings are appropriate for most deployments. If your organization requires stricter STIG compliance, use this procedure to enable additional Linux STIG security hardening options.

Important:

You cannot enable additional STIG hardening in software-only deployments.

Note:

After you enable additional STIG hardening, ensure that the length of the automatic backup password is at least 15 characters.

Procedure

  1. Log in to the virtual machine with the Avaya Aura® Web Gateway OVA as an administrator.
  2. Run the following command to enable additional STIG hardening options:
    sys secconfig --stig --enable
  3. When prompted, press c to apply new password rules.
  4. Optional To review the STIG hardening status, run the following command:
    sys secconfig --stig --query