Ubuntu goes through several rigorous security certifications and programs to meet common compliance requirements. All these security features are available with an Ubuntu Pro subscription .
FIPS 140-3
Federal Information Processing Standards Publications (FIPS) are issued by the National Institute of Standards and Technology (NIST). FIPS 140 specifies the security requirements for cryptographic modules. These requirements address the areas of secure design and implementation.
The FIPS 140-3 modules for Ubuntu 24.04 LTS are being assessed by our CST lab partner and by CMVP. We will make them available for preview when the modules are all submitted for final validation.
CIS
Ubuntu LTS releases have compliance benchmark documents developed by the Center for Internet Security (CIS). Ubuntu has developed the Ubuntu Security Guide to automate hardening Ubuntu LTS systems based off of the published CIS benchmarks. CIS benchmarks are available with the Ubuntu Security Guide for 24.04 LTS.
For more information see
DISA-STIG
Security Technical Implementation Guides (STIG) are developed by the Defense Information System Agency (DISA) for the U.S. Department of Defense (DoD). Ubuntu 24.04 has undergone evaluation by DISA; they have published the first version of the STIG, and we will release a Ubuntu Security Guide hardening profile soon.
Navigation
Documentation versions
Path | Version |
---|---|
2404 | 24.04 |
2204 | 22.04 |
20.04 | |
16-18 | 16.04 / 18.04 |
Navigation
Level | Path | Navlink |
---|---|---|
0 | security-certifications | Security Certifications |
Redirects
Mapping table
Path | Location |
---|---|
/security/certifications/docs/cis-20-18-16 | /security/certifications/docs/16-18/cis |
/security/certifications/docs/cis-manual-requirements | /security/certifications/docs/16-18/cis/customization |
/security/certifications/docs/cis-ruleset-params | /security/certifications/docs/16-18/cis/customization2 |
/security/certifications/docs/cis-juju | /security/certifications/docs/16-18/cis/juju |
/security/certifications/docs/cis-18-16 | /security/certifications/docs/16-18/cis |
/security/certifications/docs/cc-16 | /security/certifications/docs/16-18/cc |
/security/certifications/docs/cc | /security/certifications/docs/16-18/cc |
/security/certifications/docs/fips-updates | /security/certifications/docs/fips |
/security/certifications/docs/fips-16 | /security/certifications/docs/16-18/fips |
/security/certifications/docs/cis-audit | /security/certifications/docs/usg/cis/audit |
/security/certifications/docs/cis-compliance | /security/certifications/docs/usg/cis/compliance |
/security/certifications/docs/cis | /security/certifications/docs/usg/cis |