System Manager provides the following security hardening options:
selinux
audit
fips
aide
TLSv1, TLSv1.1, TLSv1.2, and TLSv1.3
fapolicy
By default, fapolicy is disabled.
You can enable or disable one or more security hardening options. While you can enable all the options, you can only disable selinux, audit, aide, and fapolicy.
Note:
If the FIPS option is selected or already enabled, you cannot select the TLSv1 and TLSv1.1 options.